Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-92rf-vjv9-rrjm

Опубликовано: 08 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 2
CVSS3: 3.5

Описание

A vulnerability, which was classified as problematic, was found in zlt2000 microservices-platform up to 6.0.0. This affects the function onLogoutSuccess of the file src/main/java/com/central/oauth/handler/OauthLogoutSuccessHandler.java. The manipulation of the argument redirect_url leads to open redirect. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

A vulnerability, which was classified as problematic, was found in zlt2000 microservices-platform up to 6.0.0. This affects the function onLogoutSuccess of the file src/main/java/com/central/oauth/handler/OauthLogoutSuccessHandler.java. The manipulation of the argument redirect_url leads to open redirect. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 6%
0.00027
Низкий

2 Low

CVSS4

3.5 Low

CVSS3

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 3.5
nvd
22 дня назад

A vulnerability, which was classified as problematic, was found in zlt2000 microservices-platform up to 6.0.0. This affects the function onLogoutSuccess of the file src/main/java/com/central/oauth/handler/OauthLogoutSuccessHandler.java. The manipulation of the argument redirect_url leads to open redirect. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 6%
0.00027
Низкий

2 Low

CVSS4

3.5 Low

CVSS3

Дефекты

CWE-601