Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30519
HistoryMay 18, 2021 - 5:22 a.m.

Open Redirection

2021-05-1805:22:36
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
open redirection
koa
url manipulation
relative urls
absolute urls
security vulnerability.

EPSS

0.001

Percentile

40.7%

koa-remove-trailing-slashes is vulnerable to open redirection. The usage of relative URLs instead of absolute URLs in removeTrailingSlashes() allows an attacker to use trailing double slashes in the URL to redirect users to malicious websites.

EPSS

0.001

Percentile

40.7%

Related for VERACODE:30519