Known vulnerabilities in follow-redirects

Software CPE: cpe:2.3:a:follow-redirects:follow-redirects:*:*:*:*:*:nodejs:*:*
Total vulnerabilities: 5
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 6.9

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting follow-redirects follow-redirects is affected by 5 known vulnerabilities: 1 medium, 4 low Critical High Medium Low

Vulnerabilities (5)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU125981 - Exposure of sensitive information to an unauthorized actor
CVE-2026-40895
CWE-200 Medium
No
No
1.16.0 14.04.2026 SB20260414106
SB2026062434
SB20260625284
and 7 more
#VU87551 - Exposure of sensitive information to an unauthorized actor
CVE-2024-28849
CWE-200 Low
No
No
1.15.6 15.03.2024 SB2024031508
SB2024031517
SB2024040365
and 59 more
#VU85369 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2023-26159
CWE-601 Low
No
No
1.15.4 15.01.2024 SB2024011510
SB2024011517
SB2024011864
and 53 more
#VU61669 - Exposure of sensitive information to an unauthorized actor
CVE-2022-0155
CWE-200 Low
No
No
1.14.7 28.03.2022 SB2022032840
SB2022032843
SB2022071505
and 32 more
#VU61668 - Exposure of sensitive information to an unauthorized actor
CVE-2022-0536
CWE-200 Low
No
No
1.14.8 28.03.2022 SB2022032841
SB2022032843
SB2022042561
and 27 more