Description
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Payara Platform Payara Server (REST Management Interface modules) allows Session Hijacking.This issue affects Payara Server: from 6.0.0 before 6.18.0, from 6.2022.1 before 6.2024.9, from 5.2020.2 before 5.2022.5, from 5.20.0 before 5.67.0, from 4.1.2.191.0 before 4.1.2.191.50.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP CSS 'wp-css-compress.php' Local File Disclosure (2.0.5)
Zikula Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2010-4729)
WordPress Plugin Chunks Cross-Site Scripting (1.1)
WordPress Plugin Job Manager Cross-Site Scripting (0.7.24)
XWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-29211)