Description Open redirect vulnerability in werkzeug before 0.11.6 via a double slash in the URL. Remediation References CVE-2020-28724 Related Vulnerabilities Oracle JRE CVE-2014-0459 Vulnerability (CVE-2014-0459) Zenphoto Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2015-5595) WordPress Plugin Cherry Cross-Site Scripting (1.2.8.1) Squid Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-4051) Rukovoditel Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-11815) Severity Medium Classification CVE-2020-28724 CWE-601 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N Tags Missing Update Known Vulnerabilities