gpp_maybe Security update for perl-http-tiny
openSUSE-2026-274


This update for perl-HTTP-Tiny fixes the following issues: - updated to 0.096 see /usr/share/doc/packages/perl-HTTP-Tiny/Changes 0.096 2026-06-08 11:21:49+02:00 Europe/Brussels - No changes from 0.095-TRIAL 0.095 2026-06-03 13:10:05+02:00 Europe/Brussels (TRIAL RELEASE) [!!! SECURITY !!!] - CVE-2026-7017 boo#1271020 - Caller-supplied Authorization, Cookie, and Proxy-Authorization headers are now stripped on cross-origin redirects by default. Use allow_credentialed_redirects to opt out. - Redirects are no longer automatically followed when going from https to http. Use allow_downgrade to revert to the original behaviour.

  • Release Date
    Aug 4 2026
  • References
    Bugzilla: 1271020
    CVEs: CVE-2026-7017
  • Type
    security
  • Severity
    important

cloud_download Downloads

SUSE Package Hub 15.7 ppc64le
  • Packages
    perl-HTTP-Tiny
    Small, simple, correct HTTP/1.1 client
    0.096-bp157.2.6.1 lock rpm
SUSE Package Hub 15.7 x86_64
  • Packages
    perl-HTTP-Tiny
    Small, simple, correct HTTP/1.1 client
    0.096-bp157.2.6.1 lock rpm
SUSE Package Hub 15.7 s390x
  • Packages
    perl-HTTP-Tiny
    Small, simple, correct HTTP/1.1 client
    0.096-bp157.2.6.1 lock rpm
SUSE Package Hub 15.7 aarch64
  • Packages
    perl-HTTP-Tiny
    Small, simple, correct HTTP/1.1 client
    0.096-bp157.2.6.1 lock rpm