Origin Validation Error Affecting resteasy-javadoc package, versions *


Severity

Recommended
0.0
high
0
10

Based on CentOS security rating.

Threat Intelligence

EPSS
0.14% (5th percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk IDSNYK-CENTOS8-RESTEASYJAVADOC-18004473
  • published17 Jul 2026
  • disclosed14 Jul 2026

Introduced: 14 Jul 2026

NewCVE-2026-15075  (opens in a new tab)
CWE-346  (opens in a new tab)

How to fix?

There is no fixed version for Centos:8 resteasy-javadoc.

NVD Description

Note: Versions mentioned in the description apply only to the upstream resteasy-javadoc package and not the resteasy-javadoc package as distributed by Centos. See How to fix? for Centos:8 relevant fixed versions and status.

In Eclipse Vert.x versions up to and including 4.5.29 (4.x branch) and 5.1.4 (5.x branch), DefaultRedirectHandler (vertx-core) propagates all request headers as-is across cross-origin HTTP 30x redirects. Only Content-Length is stripped; no origin comparison (scheme, host, port) is performed before copying headers to the redirect target. As a result, credential headers, including Authorization, Cookie, Proxy-Authorization, and arbitrary custom headers such as X-API-Token, are forwarded to the redirect destination without the caller's knowledge.

An attacker who can cause a Vert.x HttpClient to issue a request that is redirected to an attacker-controlled host (for example, by supplying a URL to a webhook dispatcher, image proxy, or microservice URL fetcher) can capture bearer tokens, basic-auth credentials, session cookies, and API keys attached to the original request.

CVSS Base Scores

version 3.1