Open redirect vulnerability in the path-based meta tag editing form in the Meta tags quick module 7.x-2.x before 7.x-2.8 for Drupal allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via the destination parameter.
Link | Tags |
---|---|
https://www.drupal.org/node/2296511 | vendor advisory |
https://www.drupal.org/node/2295975 | patch vendor advisory |