GNU Wget through 1.21.1 does not omit the Authorization header upon a redirect to a different origin, a related issue to CVE-2018-1000007.
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-6957.json"