Skip to content

x/vulndb: potential Go vuln in github.com/caddyserver/caddy: CVE-2022-29718 #339

@jba

Description

@jba

CVE-2022-29718 references github.com/caddyserver/caddy, which may be a Go module.

Description:
Caddy v2.4 was discovered to contain an open redirect vulnerability. A remote unauthenticated attacker may exploit this vulnerability to redirect users to arbitrary web URLs by tricking the victim users to click on crafted links.

Links:

See doc/triage.md for instructions on how to triage this report.

module: github.com/caddyserver/caddy
package: n/a
description: |
    Caddy v2.4 was discovered to contain an open redirect vulnerability. A remote unauthenticated attacker may exploit this vulnerability to redirect users to arbitrary web URLs by tricking the victim users to click on crafted links.
cves:
  - CVE-2022-29718
links:
    pr: https://github.com/caddyserver/caddy/pull/4499

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions