Description
An open redirect vulnerability exists in Okta OIDC Middleware prior to version 5.0.0 allowing an attacker to redirect a user to an arbitrary URL.
Remediation
References
https://github.com/okta/okta-oidc-middleware/security/advisories/GHSA-58h4-9m7m-j9m4
Related Vulnerabilities
CVE-2019-12043 Vulnerability in maven package org.webjars.bower:remarkable
CVE-2011-2487 Vulnerability in maven package org.apache.ws.security:wss4j
CVE-2019-0214 Vulnerability in maven package org.apache.archiva:archiva
CVE-2023-34468 Vulnerability in maven package org.apache.nifi:nifi-dbcp-base
CVE-2022-23710 Vulnerability in maven package org.elasticsearch:elasticsearch