CVE-2021-31879: Medium severity wget vulnerability
GNU Wget through 1.21.1 does not omit the Authorization header upon a redirect to a different origin, a related issue to CVE-2018-1000007.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-31879?
CVE-2021-31879 is a vulnerability in GNU Wget through 1.21.1 that does not omit the Authorization header upon a redirect to a different origin.
How severe is CVE-2021-31879?
CVE-2021-31879 has a severity rating of medium with a CVSS score of 6.1.
Which software is affected by CVE-2021-31879?
GNU Wget through 1.21.1, Broadcom Brocade Fabric Operating System Firmware, Netapp Cloud Backup, NetApp ONTAP Select Deploy administration utility, Netapp A250 Firmware, and Netapp 500f Firmware are affected by CVE-2021-31879.
How can I fix CVE-2021-31879?
Update GNU Wget to version 1.21.2 or later to fix CVE-2021-31879.
Are there any references available for CVE-2021-31879?
Yes, you can find references for CVE-2021-31879 at the following links: [Reference 1](https://mail.gnu.org/archive/html/bug-wget/2021-02/msg00002.html) and [Reference 2](https://security.netapp.com/advisory/ntap-20210618-0002/).