CVE-2021-23495

Published
View on NVD ↗
CVSS v3
5.4
MEDIUM
CVSS v2
5.8
MEDIUM
Affected
1
PROJECT

Description

The package karma before 6.3.16 are vulnerable to Open Redirect due to missing validation of the return_url query parameter.

Spectacular Test Runner for JavaScript
GitHubGitHub
12K