Home
MEDIUM: 4.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:NDefault status
unaffected
1.0.0 (semver)
affected
Description
In Search Guard FLX up to version 4.0.1, it is possible to use specially crafted requests to redirect the user to an untrusted URL.
Problem types
CWE-601 URL redirection to untrusted site ('open redirect')
Product status
1.0.0 (semver)
References
search-guard.com/cve-advisory/
docs.search-guard.com/latest/changelog-searchguard-flx-4_1_0