Description
Open redirect vulnerability in the search script in Trac before 0.10.5 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the q parameter, possibly related to the quickjump function.
Remediation
References
Related Vulnerabilities
Joomla Improper Check for Unusual or Exceptional Conditions Vulnerability (CVE-2021-26038)
WordPress Plugin post-views Cross-Site Scripting (2.6.1.1)
Drupal Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-3170)
WordPress Plugin Media File Renamer-Auto & Manual Rename Cross-Site Request Forgery (5.2.5)