Loading...
Loading...
KDE Konqueror for KDE 3.1.2 and earlier does not remove authentication credentials from URLs of the "user:password@host" form in the HTTP-Referer header, which could allow remote web sites to steal the credentials for pages that link to the sites.
August 27, 2003
April 16, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2003-0459
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.