Open redirect in wwbn/avideo
Moderate severity
GitHub Reviewed
Published
Apr 6, 2022
to the GitHub Advisory Database
•
Updated Jan 27, 2023
Description
Published by the National Vulnerability Database
Apr 5, 2022
Published to the GitHub Advisory Database
Apr 6, 2022
Reviewed
Apr 7, 2022
Last updated
Jan 27, 2023
Open redirect vulnerability in objects/login.json.php in WWBN AVideo through 11.6, allows attackers to arbitrarily redirect users from a crafted url to the login page. A patch is available on the
master
branch of the repository.References