There is an open redirect in the @keystone-6/auth package, where the redirect leading / filter can be bypassed.
Users may be redirected to domains other than the relative host, thereby it might be used by attackers to re-direct users to an unexpected location.
@keystone-6/auth packageThanks to morioka12 for reporting this problem.
If you have any questions around this security advisory, please don't hesitate to contact us at security@keystonejs.com, or open an issue on GitHub.
If you have a security flaw to report for any software in this repository, please see our SECURITY policy.
{
"cwe_ids": [
"CWE-601"
],
"github_reviewed": true,
"github_reviewed_at": "2023-06-14T14:54:06Z",
"nvd_published_at": "2023-06-13T17:15:14Z",
"severity": "MODERATE"
}