Vulnerabilities/

Open redirect in karma

Severity:
Medium

Description

Karma before 6.3.16 is vulnerable to Open Redirect due to missing validation of the return_url query parameter.

Recommendation

Update the karma package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
karma
Anything's wrong? Let us know Last updated on February 03, 2023

This issue is available in SmartScanner Professional

See Pricing