Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Amarsahinovic

#43155of 53,632
6.1Total CVSS
Vulnerabilities · 1
PT-2022-27668
6.1
2022-12-17
Cyface · Cyface Terms/Conditions Module · CVE-2022-4589
**Name of the Vulnerable Software and Affected Versions** cyface Terms and Conditions Module versions prior to 2.0.11 **Description** A vulnerability has been found in the cyface Terms and Conditions Module, classified as problematic. The issue affects the `returnTo` function of the file `termsandconditions/views.py`, leading to an open redirect. This manipulation can be launched remotely. **Recommendations** To address this issue, upgrade to version 2.0.11. As a temporary workaround, consider restricting access to the `returnTo` function of the `termsandconditions/views.py` file until the upgrade is applied.