📦 Guzzle

by Guzzlephp

🔍 What is Guzzle?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-31090

HIGH CVSS 7.7 Jun 27, 2022

Guzzle PHP HTTP client versions before 6.5.8 and 7.4.5 leak Authorization headers during cross-origin redirects when using the cURL handler. This exposes authentication credentials to unintended third...

CVE-2022-31042

HIGH CVSS 7.5 Jun 10, 2022

Guzzle HTTP client versions before 6.5.7 and 7.4.4 expose sensitive cookie information during HTTP redirects. When a request to an HTTPS server redirects to HTTP or to a different host, manually added...

CVE-2022-29248

HIGH CVSS 8.0 May 25, 2022

Guzzle PHP HTTP client versions prior to 6.5.6 and 7.4.3 have a cookie domain validation vulnerability that allows malicious servers to set cookies for unrelated domains. Only applications that manual...