PT-2022-13247 · Npm+2 · Follow-Redirects+2

Published

2022-02-09

·

Updated

2026-04-28

·

CVE-2022-0536

CVSS v3.1

5.9

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions NPM follow-redirects versions prior to 1.14.8
Description The issue is related to the improper removal of sensitive information before storage or transfer, which can lead to exposure of sensitive information to unauthorized actors.
Recommendations For versions prior to 1.14.8, update to version 1.14.8 or later to resolve the issue.

Exploit

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

AZL-45156
CVE-2022-0536
GHSA-PW2R-VQ6V-HR8C
USN-8217-1

Affected Products

Linuxmint
Ubuntu
Follow-Redirects