Skip to content
This repository has been archived by the owner on Apr 22, 2023. It is now read-only.

URL Redirection to Untrusted Site ('Open Redirect')

Moderate
Rudloff published GHSA-jmhf-9fj8-88gh Feb 20, 2022

Package

composer rudloff/alltube (Composer)

Affected versions

<3.0.1

Patched versions

3.0.1

Description

Impact

Releases prior to 3.0.1 are vulnerable to an open redirect vulnerability that allows an attacker to construct a URL that redirects to an arbitrary external domain.

Patches

3.0.1 contains a fix for this vulnerability.
(The 1.x and 2.x releases are not maintained anymore.)

References

Severity

Moderate

CVE ID

CVE-2022-0692

Weaknesses

Credits