[Bug 1235154] New: VUL-0: CVE-2025-21620: wasm-bindgen: deno: 'Authorization' header not dropped when fetch() handles cross-origin redirects