Security update for perl-HTTP-Tiny

This update for perl-HTTP-Tiny fixes the following issues:

- updated to 0.096
see /usr/share/doc/packages/perl-HTTP-Tiny/Changes
0.096 2026-06-08 11:21:49+02:00 Europe/Brussels
- No changes from 0.095-TRIAL
0.095 2026-06-03 13:10:05+02:00 Europe/Brussels (TRIAL RELEASE)
[!!! SECURITY !!!]
- CVE-2026-7017 boo#1271020
- Caller-supplied Authorization, Cookie, and Proxy-Authorization
headers are now stripped on cross-origin redirects by default. Use
allow_credentialed_redirects to opt out.
- Redirects are no longer automatically followed when going from https to http.
Use allow_downgrade to revert to the original behaviour.

Fixed bugs
bnc#1271020
VUL-0: CVE-2026-7017: HTTP:Tiny versions before 0.095 for Perl forward credential headers to cross-origin redirect targets
Selected Binaries
openSUSE Build Service is sponsored by