Open Redirect in GitHub repository ikus060/rdiffweb prior to 2.5.5.
The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.
Link | Tags |
---|---|
https://github.com/ikus060/rdiffweb/commit/6afaae56a29536f0118b3380d296c416aa6d078d | third party advisory patch |
https://huntr.dev/bounties/339687af-6e25-4ad8-823d-c097f607ea70 | patch third party advisory exploit |