Описание
Open redirect in karma
Karma before 6.3.16 is vulnerable to Open Redirect due to missing validation of the return_url query parameter.
Пакеты
Наименование
karma
npm
Затронутые версииВерсия исправления
< 6.3.16
6.3.16
Связанные уязвимости
CVSS3: 5.4
nvd
почти 4 года назад
The package karma before 6.3.16 are vulnerable to Open Redirect due to missing validation of the return_url query parameter.
CVSS3: 5.4
debian
почти 4 года назад
The package karma before 6.3.16 are vulnerable to Open Redirect due to ...