Open redirect vulnerability in objects/login.json.php in WWBN AVideo through 11.6, allows attackers to arbitrarily redirect users from a crafted url to the login page. A patch is available on the master branch of the repository.
{
"severity": "MODERATE",
"github_reviewed": true,
"cwe_ids": [
"CWE-601"
],
"nvd_published_at": "2022-04-05T16:15:00Z",
"github_reviewed_at": "2022-04-07T22:15:39Z"
}