Bitly · Oauth2 Proxy · CVE-2017-1000070
**Name of the Vulnerable Software and Affected Versions**
Bitly oauth2 proxy versions 2.1 and earlier
**Description**
The issue is related to an open redirect vulnerability that occurs during the start and termination of the 2-legged OAuth flow. This is caused by improper input validation and a violation of RFC-6819.
**Recommendations**
For versions 2.1 and earlier, update to a version that addresses the improper input validation issue to prevent open redirect vulnerabilities.