Common/Grav.php in Grav before 1.7 has an Open Redirect. This is partially fixed in 1.6.23 and still present in 1.6.x.
References
Link | Resource |
---|---|
https://github.com/getgrav/grav/commit/2eae104c7a4bf32bc26cb8073d5c40464bfda3f7 | Patch Third Party Advisory |
https://getgrav.org/#changelog | Release Notes Vendor Advisory |
https://github.com/getgrav/grav/issues/3134 | Third Party Advisory |
Configurations
Information
Published : 2020-04-04 12:15
Updated : 2021-05-17 07:30
NVD link : CVE-2020-11529
Mitre link : CVE-2020-11529
JSON object : View
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
Products Affected
getgrav
- grav