Description
forge is vulnerable to URL Redirection to Untrusted Site
Remediation
References
https://github.com/digitalbazaar/forge/commit/db8016c805371e72b06d8e2edfe0ace0df934a5e
https://huntr.dev/bounties/41852c50-3c6d-4703-8c55-4db27164a4ae
Related Vulnerabilities
CVE-2020-17530 Vulnerability in maven package org.apache.struts:struts2-core
CVE-2021-23447 Vulnerability in npm package teddy
CVE-2022-23496 Vulnerability in maven package nl.basjes.parse.useragent:yauaa-hive
CVE-2023-35160 Vulnerability in maven package org.xwiki.platform:xwiki-platform-web-templates
CVE-2020-6428 Vulnerability in maven package org.webjars.npm:electron