CVE-2024-5936

An open redirect vulnerability exists in imartinez/privategpt version 0.5.0 due to improper handling of the 'file' parameter. This vulnerability allows attackers to redirect users to a URL specified by user-controlled input without proper validation or sanitization. The impact of this vulnerability includes potential phishing attacks, malware distribution, and credential theft.
Configurations

No configuration.

History

27 Jun 2024, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-27 19:15

Updated : 2024-06-27 19:25


NVD link : CVE-2024-5936

Mitre link : CVE-2024-5936

CVE.ORG link : CVE-2024-5936


JSON object : View

Products Affected

No product.

CWE
CWE-601

URL Redirection to Untrusted Site ('Open Redirect')