Description
Open redirect in hekto <=0.2.3 when target domain name is used as html filename on server.
Remediation
References
https://hackerone.com/reports/320693
Related Vulnerabilities
CVE-2019-10807 Vulnerability in npm package blamer
CVE-2015-8862 Vulnerability in npm package mustache
CVE-2021-23375 Vulnerability in npm package psnode
CVE-2020-1935 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core
CVE-2020-8175 Vulnerability in maven package org.webjars.npm:jpeg-js