Vulnerabilities/

Undici's Proxy-Authorization header not cleared on cross-origin redirect for dispatch, request, stream, pipeline

Severity:
Low

Description

Undici cleared Authorization and Proxy-Authorization headers for fetch(), but did not clear them for undici.request().

Recommendation

Update the undici package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
undici
Anything's wrong? Let us know Last updated on February 13, 2025