Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Amarsahinovic

#48426of 56,330
5.5Total CVSS
Vulnerabilities · 1
PT-2022-27668
5.5
2022-12-17
Cyface · Cyface Terms/Conditions Module · CVE-2022-4589
**Name of the Vulnerable Software and Affected Versions** cyface Terms and Conditions Module versions prior to 2.0.11 **Description** A vulnerability has been found in the cyface Terms and Conditions Module, classified as problematic. The issue affects the `returnTo` function of the file `termsandconditions/views.py`, leading to an open redirect. This manipulation can be launched remotely. **Recommendations** To address this issue, upgrade to version 2.0.11. As a temporary workaround, consider restricting access to the `returnTo` function of the `termsandconditions/views.py` file until the upgrade is applied.