CVE-2022-0637

open redirect in pollbot (pollbot.services.mozilla.com) in versions before 1.4.6
Configurations

Configuration 1 (hide)

cpe:2.3:a:mozilla:pollbot:*:*:*:*:*:*:*:*

History

26 May 2023, 22:15

Type Values Removed Values Added
Summary There was an open redirection vulnerability pollbot, which was used in https://pollbot.services.mozilla.com/ and https://pollbot.stage.mozaws.net/ An attacker could have redirected anyone to malicious sites. open redirect in pollbot (pollbot.services.mozilla.com) in versions before 1.4.6
References
  • {'url': 'https://bugzilla.mozilla.org/show_bug.cgi?id=CVE-2022-0637', 'name': 'https://bugzilla.mozilla.org/show_bug.cgi?id=CVE-2022-0637', 'tags': ['Exploit', 'Issue Tracking', 'Vendor Advisory'], 'refsource': 'MISC'}
  • {'url': 'https://github.com/mozilla/PollBot/security/advisories/GHSA-vg27-hr3v-3cqv', 'name': 'https://github.com/mozilla/PollBot/security/advisories/GHSA-vg27-hr3v-3cqv', 'tags': ['Vendor Advisory'], 'refsource': 'MISC'}
  • (MISC) https://bugzilla.mozilla.org/show_bug.cgi?id=1753838 -

28 Feb 2023, 14:16

Type Values Removed Values Added
CPE cpe:2.3:a:mozilla:pollbot:*:*:*:*:*:*:*:*
References (MISC) https://github.com/mozilla/PollBot/security/advisories/GHSA-vg27-hr3v-3cqv - (MISC) https://github.com/mozilla/PollBot/security/advisories/GHSA-vg27-hr3v-3cqv - Vendor Advisory
References (MISC) https://bugzilla.mozilla.org/show_bug.cgi?id=CVE-2022-0637 - (MISC) https://bugzilla.mozilla.org/show_bug.cgi?id=CVE-2022-0637 - Exploit, Issue Tracking, Vendor Advisory
CWE CWE-601
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.1

17 Feb 2023, 12:52

Type Values Removed Values Added
New CVE

Information

Published : 2023-02-16 22:15

Updated : 2024-02-04 23:14


NVD link : CVE-2022-0637

Mitre link : CVE-2022-0637

CVE.ORG link : CVE-2022-0637


JSON object : View

Products Affected

mozilla

  • pollbot
CWE
CWE-601

URL Redirection to Untrusted Site ('Open Redirect')