mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 02:31:38 +00:00
684 B
684 B
CVE-2023-28874
Description
The next parameter in the /accounts/login endpoint of Seafile 9.0.6 allows attackers to redirect users to arbitrary sites.
POC
Reference
- https://herolab.usd.de/en/security-advisories/usd-2022-0033/
- https://herolab.usd.de/en/security-advisories/usd-2022-0033/