CVE-2024-37891 | urllib3 up to 1.26.18/2.2.1 Header Proxy-Authorization resource transfer (Nessus ID 207856 / WID-SEC-2025-1567)
A vulnerability marked as problematic has been reported in urllib3 up to 1.26.18/2.2.1. Affected is an unknown function of the component Header Handler. Performing a manipulation of the argument Proxy-Authorization results in incorrect resource transfer.
This vulnerability is cataloged as CVE-2024-37891. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.