Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-54171

Опубликовано: 20 июл. 2026
Источник: msrc
CVSS3: 6.5
EPSS Низкий

Описание

Excon: redact additional sensitive/risky headers when following redirects

EPSS

Процентиль: 23%
0.00304
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
16 дней назад

Excon is usable, fast, simple HTTP 1.1 for Ruby. Prior to 1.5.0, Excon's RedirectFollower middleware failed to strip additional sensitive headers when following redirects and did not provide a custom list of headers to strip. This could cause inadvertent leakage of sensitive data when the initial request includes header information that is not intended for the new target. This issue is fixed in version 1.5.0.

CVSS3: 6.5
nvd
16 дней назад

Excon is usable, fast, simple HTTP 1.1 for Ruby. Prior to 1.5.0, Excon's RedirectFollower middleware failed to strip additional sensitive headers when following redirects and did not provide a custom list of headers to strip. This could cause inadvertent leakage of sensitive data when the initial request includes header information that is not intended for the new target. This issue is fixed in version 1.5.0.

CVSS3: 6.5
debian
16 дней назад

Excon is usable, fast, simple HTTP 1.1 for Ruby. Prior to 1.5.0, Excon ...

CVSS3: 6.5
github
23 дня назад

Excon does not redact additional sensitive/risky headers when following redirects

EPSS

Процентиль: 23%
0.00304
Низкий

6.5 Medium

CVSS3