PT-2024-40532 · Friendsofsymfony · Friendsofsymfony/Oauth2-Php
Published
2024-05-15
·
Updated
2024-05-15
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions:
friendsofsymfony/oauth2-php library (affected versions not specified)
Description:
An open redirection issue has been identified in the OAuth authentication process, potentially exposing users to unauthorized redirects. The issue has been addressed by implementing an exact check for the domain and port to ensure more secure redirection.
Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Friendsofsymfony/Oauth2-Php