Uncontrolled external site redirect In github.com/caddyserver/caddy
Description
Open Redirect in Caddy Caddy v2.4.6 was discovered to contain an open redirection vulnerability which allows attackers to redirect users to phishing websites via crafted URLs
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
go | 2.5.0 | ||
go | 2.5.0-beta.1 | ||
debian 13 | 2.5.2-1 | ||
debian 12 | 2.5.2-1 | ||
debian 14 | 2.5.2-1 |
Aliases
1. 2. 3. 4. 5. 6.
References
1. 2. 3. 4. 5.