Loading vulnerability details...
follow-redirects leaks Custom Authentication Headers to Cross-Domain Redirect Targets
follow-redirects leaks Custom Authentication Headers to Cross-Domain Redirect Targets
This low-severity vulnerability has limited impact but should still be addressed as part of regular security maintenance.
Probability of exploitation in the next 30 days · more likely than 56.0% of all CVEs.
Apply security patches to version 1.16.0 immediately
Isolate affected systems from untrusted networks until patching is complete
Implement enhanced monitoring for exploitation attempts and unusual behavior