VDB
GO-2024-2600
GO-2024-2600
PUBLISHED
Incorrect forwarding of sensitive headers and cookies on HTTP redirect in net/http
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| wolfi | nodetaint | 0, 0, 0 |
| chainguard | prometheus-adapter-fips-0.10 | 0, 0, 0 |
| chainguard | aws-flb-cloudwatch | 0, 0, 0 |
| chainguard | secrets-store-csi-driver-provider-gcp | 0, 0, 0 |
| chainguard | kube-logging-logging-operator-3.17 | 0, 0, 0 |
| chainguard | prometheus-elasticsearch-exporter-fips | 0, 0, 0 |
| wolfi | aws-flb-firehose | 0, 0, 0 |
| chainguard | tigera-operator-1.29 | 0, 0, 0 |
| chainguard | cortex | 0, 0, 0 |
| chainguard | cass-operator | 0, 0, 0 |
| wolfi | wireguard-go | 0, 0, 0 |
| chainguard | hubble-ui-backend-fips | 0, 0, 0 |
| chainguard | argo-workflows | 0, 0, 0 |
| wolfi | fuse-overlayfs-snapshotter | 0, 0, 0 |
| chainguard | timoni | 0, 0, 0 |
| wolfi | crossplane-provider-azure | 0, 0, 0 |
| chainguard | grafana-operator-fips | 0, 0, 0 |
| wolfi | bom | 0, 0, 0 |
| chainguard | chartmuseum | 0, 0, 0 |
| chainguard | pulumi | 0, 0, 0 |
…and 509 more
Timeline
- Mar 5, 2024 CVE Published
- Feb 4, 2026 CVE Updated