VYPR

Abp

by Volosoft

Source repositories

CVEs (1)

  • CVE-2025-65581MedDec 16, 2025
    risk 0.27cvss 5.3epss 0.00

    An open redirect vulnerability exists in the Account module in Volosoft ABP Framework >= 5.1.0 and < 10.0.0-rc.2. Improper validation of the returnUrl parameter in the register function allows an attacker to redirect users to arbitrary external domains.