Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2026-54171

17 дней назад

Excon is usable, fast, simple HTTP 1.1 for Ruby. Prior to 1.5.0, Excon's RedirectFollower middleware failed to strip additional sensitive headers when following redirects and did not provide a custom list of headers to strip. This could cause inadvertent leakage of sensitive data when the initial request includes header information that is not intended for the new target. This issue is fixed in version 1.5.0.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-54171

17 дней назад

Excon is usable, fast, simple HTTP 1.1 for Ruby. Prior to 1.5.0, Excon's RedirectFollower middleware failed to strip additional sensitive headers when following redirects and did not provide a custom list of headers to strip. This could cause inadvertent leakage of sensitive data when the initial request includes header information that is not intended for the new target. This issue is fixed in version 1.5.0.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2026-54171

14 дней назад

Excon: redact additional sensitive/risky headers when following redirects

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2026-54171

17 дней назад

Excon is usable, fast, simple HTTP 1.1 for Ruby. Prior to 1.5.0, Excon ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-48rx-c7pg-q66r

24 дня назад

Excon does not redact additional sensitive/risky headers when following redirects

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-54171

Excon is usable, fast, simple HTTP 1.1 for Ruby. Prior to 1.5.0, Excon's RedirectFollower middleware failed to strip additional sensitive headers when following redirects and did not provide a custom list of headers to strip. This could cause inadvertent leakage of sensitive data when the initial request includes header information that is not intended for the new target. This issue is fixed in version 1.5.0.

CVSS3: 6.5
0%
Низкий
17 дней назад
nvd логотип
CVE-2026-54171

Excon is usable, fast, simple HTTP 1.1 for Ruby. Prior to 1.5.0, Excon's RedirectFollower middleware failed to strip additional sensitive headers when following redirects and did not provide a custom list of headers to strip. This could cause inadvertent leakage of sensitive data when the initial request includes header information that is not intended for the new target. This issue is fixed in version 1.5.0.

CVSS3: 6.5
0%
Низкий
17 дней назад
msrc логотип
CVE-2026-54171

Excon: redact additional sensitive/risky headers when following redirects

CVSS3: 6.5
0%
Низкий
14 дней назад
debian логотип
CVE-2026-54171

Excon is usable, fast, simple HTTP 1.1 for Ruby. Prior to 1.5.0, Excon ...

CVSS3: 6.5
0%
Низкий
17 дней назад
github логотип
GHSA-48rx-c7pg-q66r

Excon does not redact additional sensitive/risky headers when following redirects

CVSS3: 6.5
0%
Низкий
24 дня назад

Уязвимостей на страницу