PT-2024-40532 · Friendsofsymfony · Friendsofsymfony/Oauth2-Php

Published

2024-05-15

·

Updated

2024-05-15

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions: friendsofsymfony/oauth2-php library (affected versions not specified)
Description: An open redirection issue has been identified in the OAuth authentication process, potentially exposing users to unauthorized redirects. The issue has been addressed by implementing an exact check for the domain and port to ensure more secure redirection.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

GHSA-XM3X-4PH3-3X9C

Affected Products

Friendsofsymfony/Oauth2-Php