Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xcvf-46f4-xwxf

Опубликовано: 14 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.1

Описание

chi versions before v5.2.2 contain an open redirect vulnerability in the RedirectSlashes middleware function that uses the Host header to construct redirect URLs. Attackers can manipulate the Host header to redirect users to arbitrary hosts, enabling phishing attacks and credential theft.

chi versions before v5.2.2 contain an open redirect vulnerability in the RedirectSlashes middleware function that uses the Host header to construct redirect URLs. Attackers can manipulate the Host header to redirect users to arbitrary hosts, enabling phishing attacks and credential theft.

EPSS

Процентиль: 23%
0.00307
Низкий

5.1 Medium

CVSS4

Дефекты

CWE-601

Связанные уязвимости

nvd
5 дней назад

chi versions before v5.2.2 contain an open redirect vulnerability in the RedirectSlashes middleware function that uses the Host header to construct redirect URLs. Attackers can manipulate the Host header to redirect users to arbitrary hosts, enabling phishing attacks and credential theft.

debian
5 дней назад

chi versions before v5.2.2 contain an open redirect vulnerability in t ...

EPSS

Процентиль: 23%
0.00307
Низкий

5.1 Medium

CVSS4

Дефекты

CWE-601