Description


Open redirect vulnerability in pgAdmin 4 versions prior to v6.14 allows a remote unauthenticated attacker to redirect a user to an arbitrary web site and conduct a phishing attack by having a user to access a specially crafted URL.

Weaknesses



CWE-601

134c704f-9b21-4f2e-91b3-4a467353bcc0

Secondary

CWE-601

CVSS impact metrics


CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

6.1 · Medium

Information


Source identifier

[email protected]

Vulnerability status

Modified

Published

2023-01-17T09:15:11.657Z

3 years ago

Last modified

2025-04-03T14:15:31.440Z

1 year ago