漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
CVE-2025-22227: Authentication Leak On Redirect With Reactor Netty HTTP Client
Vulnerability Description
In some specific scenarios with chained redirects, Reactor Netty HTTP client leaks credentials. In order for this to happen, the HTTP client must have been explicitly configured to follow redirects.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Vulnerability Type
N/A
Vulnerability Title
Reactor Netty 安全漏洞
Vulnerability Description
Reactor Netty是基于 Netty 框架的非阻塞和背压就绪的 TCP/HTTP/UDP/QUIC 客户端和服务器。 Reactor Netty存在安全漏洞,该漏洞源于在链式重定向的某些特定场景中,Reactor Netty HTTP客户端会泄露凭证。
CVSS Information
N/A
Vulnerability Type
N/A