from 0, < 7.4.4-1
HIGH7.7CVE-2022-31091Change in port should be considered a change in origin from 0, < 7.4.5-1
HIGH7.7CVE-2022-31090CURLOPT_HTTPAUTH option not cleared on change of origin from 0, < 7.4.5-1
HIGH7.5CVE-2022-31042Fix failure to strip Authorization header on HTTP downgrade in Guzzle from 0, < 7.4.4-1
HIGH7.5Guzzle is an open source PHP HTTP client.
from 0, < 7.4.4-1
MEDIUM5.9guzzlehttp/guzzle: Silent HTTPS-Proxy Downgrade to Cleartext
from 0
MEDIUM5.8guzzlehttp/guzzle: Dot-Only Cookie Domains Match All Hosts
from 0
MEDIUM4.7Guzzle: Cookie Disclosure and Injection via IP-Address Domains
from 0