MEDIUM6.3npm
GHSA-9w6v-m7wp-jwg4· CVE-2020-11021Http request which redirect to another hostname do not strip authorization header in @actions/http-client
Modified: 7/8/2026
package
pkg:npm/%40actions/http-client
Http request which redirect to another hostname do not strip authorization header in @actions/http-client
Modified: 7/8/2026