Skip to content

Open redirect vulnerability in the Node.js adapter

Moderate
stianst published GHSA-59fq-727j-hm3f Mar 2, 2023

Package

No package listed

Affected versions

<= 18.0.1

Patched versions

21.0.1

Description

A Open Redirect vulnerability in the Node.js adapter when forwarding requests to Keycloak using checkSSO with query param 'prompt=none'

Severity

Moderate

CVE ID

CVE-2022-2237

Weaknesses

Credits