Versions of hekto
before 0.2.4 are vulnerable to open redirect when a domain name is used as part of the .html
filename.
Update to version 0.2.4 or later.
{ "cwe_ids": [ "CWE-601" ], "severity": "MODERATE", "github_reviewed_at": "2020-06-16T21:52:21Z", "github_reviewed": true, "nvd_published_at": "2018-06-01T17:29:00Z" }