Description
Open redirect in hekto <=0.2.3 when target domain name is used as html filename on server.
Remediation
References
https://hackerone.com/reports/320693
Related Vulnerabilities
CVE-2017-16145 Vulnerability in npm package sspa
CVE-2022-28154 Vulnerability in maven package org.jenkins-ci.plugins:covcomplplot
CVE-2020-28479 Vulnerability in npm package jointjs
CVE-2023-31582 Vulnerability in maven package org.bitbucket.b_c:jose4j
CVE-2015-0250 Vulnerability in maven package org.eclipse.birt.runtime.3_7_1:org.apache.batik.dom