A vulnerability categorized as problematic has been discovered in Guzzle up to 7.15.0. Impacted is an unknown function of the component RedirectMiddleware. The manipulation of the argument referer results in information disclosure.

This vulnerability is reported as CVE-2026-67354. The attack can be launched remotely. No exploit exists.

It is advisable to upgrade the affected component.