There was an open redirection vulnerability pollbot, which was used in https://pollbot.services.mozilla.com/ and https://pollbot.stage.mozaws.net/ An attacker could have redirected anyone to malicious sites.
References
Link | Resource |
---|---|
https://github.com/mozilla/PollBot/security/advisories/GHSA-vg27-hr3v-3cqv | Vendor Advisory |
https://bugzilla.mozilla.org/show_bug.cgi?id=CVE-2022-0637 | Exploit Issue Tracking Vendor Advisory |
Configurations
Information
Published : 2023-02-16 14:15
Updated : 2023-02-28 06:16
NVD link : CVE-2022-0637
Mitre link : CVE-2022-0637
JSON object : View
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
Products Affected
mozilla
- pollbot