Cyface · Cyface Terms/Conditions Module · CVE-2022-4589
**Name of the Vulnerable Software and Affected Versions**
cyface Terms and Conditions Module versions prior to 2.0.11
**Description**
A vulnerability has been found in the cyface Terms and Conditions Module, classified as problematic. The issue affects the `returnTo` function of the file `termsandconditions/views.py`, leading to an open redirect. This manipulation can be launched remotely.
**Recommendations**
To address this issue, upgrade to version 2.0.11. As a temporary workaround, consider restricting access to the `returnTo` function of the `termsandconditions/views.py` file until the upgrade is applied.