Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Jugmac00

#39532of 53,624
6.9Total CVSS
Vulnerabilities · 1
PT-2021-14431
6.9
2021-03-08
Zope · Products.Pluggableauthservice · CVE-2021-21337
**Name of the Vulnerable Software and Affected Versions** Products.PluggableAuthService versions prior to 2.6.1 **Description** The issue is an open redirect vulnerability, where a maliciously crafted link to the login form and login functionality could redirect the browser to a different website. **Recommendations** For versions prior to 2.6.1, update to version 2.6.1 by changing the buildout version pin to `2.6.1` and re-running the buildout, or by using `pip install "Products.PluggableAuthService>=2.6.1"`.