Lucene search

K
gitlabHttps://gitlab.com/gitlab-org/security-products/gemnasium-dbGITLAB-C1B4E7245276F6BB9AAA25EDCF23F369
HistoryMay 16, 2014 - 12:00 a.m.

Malformed URLs from user input incorrectly validated

2014-05-1600:00:00
https://gitlab.com/gitlab-org/security-products/gemnasium-db
gitlab.com
15

EPSS

0.005

Percentile

75.2%

The validation for redirects does not correctly validate some malformed URLs, which are accepted by some browsers. This allows a user to be redirected to an unsafe URL unexpectedly.

EPSS

0.005

Percentile

75.2%