Medium severity6.1NVD Advisory· Published Oct 18, 2017· Updated May 13, 2026
CVE-2015-6961
CVE-2015-6961
Description
Open redirect vulnerability in gluon/tools.py in Web2py 2.9.11 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the _next parameter to user/logout.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/web2py/web2py/commit/e31a099cb3456fef471886339653430ae59056b0nvdPatchThird Party Advisory
- github.com/web2py/web2py/issues/731nvdThird Party Advisory
News mentions
0No linked articles in our index yet.