Description
Caddy v2.4 was discovered to contain an open redirect vulnerability. A remote unauthenticated attacker may exploit this vulnerability to redirect users to arbitrary web URLs by tricking the victim users to click on crafted links.
Remediation
References
Related Vulnerabilities
Atlassian Jira Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2020-14174)
PostgreSQL Untrusted Search Path Vulnerability (CVE-2020-14350)
WordPress Plugin WP-FeedStats de HTML Injection (2.3)
Liferay Portal Insecure Default Initialization of Resource Vulnerability (CVE-2024-26267)