CVE-2025-4673

Proxy-Authorization and Proxy-Authenticate headers persisted on cross-origin redirects potentially leaking sensitive information.

  • Published Jun 11, 2025
  • CVSS 6.8 medium
  • 0.7% chance of exploitation in the next 30 days (EPSS)

Affected software

In the news

CVE-2025-4673 at the National Vulnerability Database