Description
Before WordPress 4.9.5, the redirection URL for the login page was not validated or sanitized if forced to use HTTPS.
Remediation
References
Related Vulnerabilities
Joomla Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2022-27912)
Atlassian Jira Improper Authentication Vulnerability (CVE-2021-43950)
Jenkins Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-3722)