CVE-2022-47500

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Apache Software Foundation Apache Helix UI component.This issue affects Apache Helix all releases from 0.8.0 to 1.0.4. Solution: removed the the forward component since it was improper designed for UI embedding.  User please upgrade to 1.1.0 to fix this issue.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:apache:helix:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:32

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de redireccionamiento de URL a un sitio que no es de confianza ("Open Redirect") en Apache Software Foundation Apache Helix UI component. Este problema afecta a todas las versiones de Apache Helix desde 0.8.0 a 1.0.4. Solución:se eliminó el componente delantero porque no estaba diseñado correctamente para la incrustación de la interfaz de usuario. Usuario, actualice a 1.1.0 para solucionar este problema.
References () https://lists.apache.org/thread/lr74xtxxbb1t3dfn5qzzwl2xjr3qlbmh - Issue Tracking, Vendor Advisory () https://lists.apache.org/thread/lr74xtxxbb1t3dfn5qzzwl2xjr3qlbmh - Issue Tracking, Vendor Advisory

Information

Published : 2022-12-19 11:15

Updated : 2025-04-17 15:15


NVD link : CVE-2022-47500

Mitre link : CVE-2022-47500

CVE.ORG link : CVE-2022-47500


JSON object : View

Products Affected

apache

  • helix
CWE
CWE-601

URL Redirection to Untrusted Site ('Open Redirect')