Описание
A Host Header injection vulnerability in the password reset function of VigyBag Open Source Online Shop commit 3f0e21b allows attackers to redirect victim users to a malicious site via a crafted URL.
EPSS
Процентиль: 6%
0.00024
Низкий
6.1 Medium
CVSS3
Дефекты
CWE-74
Связанные уязвимости
CVSS3: 6.1
github
8 месяцев назад
A Host Header injection vulnerability in the password reset function of VigyBag Open Source Online Shop commit 3f0e21b allows attackers to redirect victim users to a malicious site via a crafted URL.
EPSS
Процентиль: 6%
0.00024
Низкий
6.1 Medium
CVSS3
Дефекты
CWE-74