Lucene search

K
osvGoogleOSV:GHSA-MMJH-45VJ-HFVF
HistoryMay 17, 2022 - 5:50 a.m.

Dojo Open Redirect vulnerability

2022-05-1705:50:10
Google
osv.dev
4

7.5 High

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

65.4%

Multiple open redirect vulnerabilities in Dojo 1.0.x before 1.0.3, 1.1.x before 1.1.2, 1.2.x before 1.2.4, 1.3.x before 1.3.3, and 1.4.x before 1.4.2 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors, possibly related to dojo/resources/iframe_history.html, dojox/av/FLAudio.js, dojox/av/FLVideo.js, dojox/av/resources/audio.swf, dojox/av/resources/video.swf, util/buildscripts/jslib/build.js, util/buildscripts/jslib/buildUtil.js, and util/doh/runner.html.

7.5 High

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

65.4%