Description
Capgo before 12.128.2 contains an open redirect vulnerability in the confirm-signup endpoint that allows attackers to redirect users to arbitrary external websites. The confirmation_url parameter is not validated, enabling attackers to craft malicious links for phishing and credential harvesting attacks.
Problem types
URL Redirection to Untrusted Site ('Open Redirect')
Product status
Any version before 12.128.2
12.128.2 (semver)
Credits
muhnabil04
References
github.com/.../capgo/security/advisories/GHSA-24q8-ghqq-m8cj (GHSA Advisory GHSA-24q8-ghqq-m8cj)
www.vulncheck.com/...redirect-via-confirmation-url-parameter (VulnCheck Advisory: Capgo - Open Redirect via confirmation_url Parameter)