Medium severity6.1NVD Advisory· Published Aug 11, 2021· Updated Jun 17, 2026
CVE-2021-22098
CVE-2021-22098
Description
UAA server versions prior to 75.4.0 are vulnerable to an open redirect vulnerability. A malicious user can exploit the open redirect vulnerability by social engineering leading to take over of victims’ accounts in certain cases along with redirection of UAA users to a malicious sites.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:cloudfoundry:user_account_and_authentication:*:*:*:*:*:*:*:*Range: <75.5.0
- UAA/UAA serverdescription
- Range: <75.4.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.