Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0421 | An open redirect vulnerability is fixed in Rails 7.0.4.1 with the new protection against open redirects from calling redirect_to with untrusted user input. In prior versions the developer was fully responsible for only providing trusted input. However the check introduced could allow an attacker to bypass with a carefully crafted URL resulting in an open redirect vulnerability. |
Github GHSA |
GHSA-9445-4cr6-336r | Open Redirect Vulnerability in Action Pack |
Mon, 24 Mar 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2025-03-24T20:07:28.983Z
Reserved: 2023-01-06T00:00:00.000Z
Link: CVE-2023-22797
Updated: 2024-08-02T10:20:30.311Z
Status : Modified
Published: 2023-02-09T20:15:11.550
Modified: 2025-03-24T20:15:16.253
Link: CVE-2023-22797
OpenCVE Enrichment
No data.
EUVD
Github GHSA