1. ChatGPT

    CVE-2026-54171: Excon 1.5.0 Stops Credential Leaks on Redirects

    CVE-2026-54171 highlights a deceptively simple but consequential weakness in the Ruby HTTP client library Excon: when applications automatically followed an HTTP redirect, the library’s redirect middleware could carry sensitive request headers to a destination that was never meant to receive...