CVE-2022-0155
High
Exposure of Private Personal Information to an Unauthorized Actor in follow-redirects/follow-redirects
follow-redirects is vulnerable to Exposure of Private Personal Information to an Unauthorized Actor
Exploit probability
2.4%
Published
January 10, 2022
Required by
Not available
Last source change
August 19, 2026
02 / AFFECTED SOFTWARE
Affected packages
49 explicit affected versions
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
GHSA-74fj-2j2h-c42q
View original source
follow-redirects is vulnerable to Exposure of Private Personal Information to an Unauthorized Actor
Open Source Vulnerabilities
CVE-2022-0155
View original source
follow-redirects is vulnerable to Exposure of Private Personal Information to an Unauthorized Actor
05 / REFERENCES
Further evidence
- https://cert-portal.siemens.com/productcert/pdf/ssa-637483.pdf
- https://github.com/follow-redirects/follow-redirects
- https://github.com/follow-redirects/follow-redirects/commit/8b347cbcef7c7b72a6e9be20f5710c17d6163c22
- https://huntr.dev/bounties/fc524e4b-ebb6-427d-ab67-a64181020406
- https://nvd.nist.gov/vuln/detail/CVE-2022-0155
- https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/0xxx/CVE-2022-0155.json