Description
An open redirect vulnerability exists in Okta OIDC Middleware prior to version 5.0.0 allowing an attacker to redirect a user to an arbitrary URL.
Remediation
References
https://github.com/okta/okta-oidc-middleware/security/advisories/GHSA-58h4-9m7m-j9m4
Related Vulnerabilities
CVE-2021-32796 Vulnerability in npm package xmldom
CVE-2020-28426 Vulnerability in npm package kill-process-on-port
CVE-2014-3578 Vulnerability in maven package org.springframework:spring-core
CVE-2020-28425 Vulnerability in npm package curljs
CVE-2020-28487 Vulnerability in maven package org.webjars.npm:vis-timeline