guzzlehttp/guzzle Security Advisories for 7.12.2 (5)
-
[MEDIUM] Guzzle: URI fragments disclosed in redirect Referer headers
PKSA-fy2t-3c5f-827y GHSA-h95v-h523-3mw8
Affected version: <7.15.1
Reported by:
GitHub -
[MEDIUM] Guzzle: Host-only cookie scope is not preserved
PKSA-qxvb-2bpp-dnk6 GHSA-wm3w-8rrp-j577
Affected version: <7.15.1
Reported by:
GitHub -
[MEDIUM] Guzzle: Unbounded response cookies risk denial of service
PKSA-bbs6-q5q9-f3t4 GHSA-f283-ghqc-fg79
Affected version: <7.15.1
Reported by:
GitHub -
[MEDIUM] Guzzle: Cookie Disclosure and Injection via IP-Address Domains
PKSA-bcdd-5xc7-gwfb CVE-2026-59883 GHSA-g446-98w2-8p5w
Affected version: <7.12.3
Reported by:
GitHub -
[MEDIUM] Guzzle: Proxy-Authorization headers can be sent to origin servers
PKSA-pwsk-hy21-4gby GHSA-94pj-82f3-465w
Affected version: <7.14.2
Reported by:
GitHub