UNKNOWN npm
Open Redirect in apostrophe
GHSA-h97g-4mx7-5p2p
Published ยท Modified
Description
Versions of apostrophe prior to 2.92.0 are vulnerable to Open Redirect. The package redirected requests to third-party websites if escaped URLs followed by a trailing / were appended at the end.
Recommendation
Update to version 2.92.0 or later.
Ready to move
Start Securing
Free, no credit card | First findings in minutes