<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T01:26:46.945154+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-232668</id>
    <title>EUVD-2026-232668</title>
    <updated>2026-10-04T01:26:47.102095+00:00</updated>
    <content>EUVD-2026-232668</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-232668"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-31151</id>
    <title>fkie_cve-2022-31151</title>
    <updated>2026-10-04T01:26:47.102142+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Authorization headers are cleared on cross-origin redirect. However, cookie headers which are sensitive headers and are official headers found in the spec, remain uncleared. There are active users using cookie headers in undici. This may lead to accidental leakage of cookie to a 3rd-party site or a malicious attacker who can control the redirection target (ie. an open redirector) to leak the cookie to the 3rd party site. This was patched in v5.7.1. By default, this vulnerability is not exploitable. Do not enable redirections, i.e. `maxRedirections: 0` (the default).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-31151"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-q768-x9m6-m9qp</id>
    <title>GHSA-q768-x9m6-m9qp — undici before v5.8.0 vulnerable to uncleared cookies on cross-host / cross-origin redirect</title>
    <updated>2026-10-04T01:26:47.102194+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: undici</p>
<p>### Impact</p>
<p>Authorization headers are already cleared on cross-origin redirect in
https://github.com/nodejs/undici/blob/main/lib/handler/redirect.js#L189, based on https://github.com/nodejs/undici/issues/872.</p>
<p>However, cookie headers which are sensitive headers and are official headers found in the spec, remain uncleared. There also has been active discussion of implementing a cookie store https://github.com/nodejs/undici/pull/1441, which suggests that there are active users using cookie headers in undici.
As such this may lead to accidental leakage of cookie to a 3rd-party site or a malicious attacker who can control the redirection target (ie. an open redirector) to leak the cookie to the 3rd party site.</p>
<p>### Patches</p>
<p>This was patched in v5.8.0.</p>
<p>### Workarounds</p>
<p>By default, this vulnerability is not exploitable.
Do not enable redirections, i.e. `maxRedirections: 0` (the default).</p>
<p>### References</p>
<p>https://hackerone.com/reports/1635514
https://curl.se/docs/CVE-2018-1000007.html
https://curl.se/docs/CVE-2022-27776.html</p>
<p>### For more information
If you have any questions or comments about this advisory:
* Open an issue in [undici repository](https://github.com/nodejs/undici/issues)
* To make a report, follow the [SECURITY](https://github.com/nodejs/node/blob/HEAD/SECURITY.md) document</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-q768-x9m6-m9qp"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-31151</id>
    <title>gsd-2022-31151</title>
    <updated>2026-10-04T01:26:47.102269+00:00</updated>
    <content>gsd-2022-31151</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-31151"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2022:6696</id>
    <title>RHSA-2022:6696 — Red Hat Security Advisory: Red Hat Advanced Cluster Management 2.4.6 security update and bug fixes</title>
    <updated>2026-10-04T01:26:47.102289+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>golang: crypto/tls: session tickets lack random ticket_age_add moment: inefficient parsing algorithm resulting in DoS nodejs16: CRLF injection in node-undici nodejs/undici: Cookie headers uncleared on cross-origin redirect vm2: Sandbox Escape in vm2</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2022:6696"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-31151</id>
    <title>UBUNTU-CVE-2022-31151</title>
    <updated>2026-10-04T01:26:47.102328+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:24.04:LTS: node-undici, Ubuntu:25.10: node-undici, Ubuntu:26.04:LTS: node-undici</p>
<p>Authorization headers are cleared on cross-origin redirect. However, cookie headers which are sensitive headers and are official headers found in the spec, remain uncleared. There are active users using cookie headers in undici. This may lead to accidental leakage of cookie to a 3rd-party site or a malicious attacker who can control the redirection target (ie. an open redirector) to leak the cookie to the 3rd party site. This was patched in v5.7.1. By default, this vulnerability is not exploitable. Do not enable redirections, i.e. `maxRedirections: 0` (the default).</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-31151"/>
  </entry>
</feed>
