VYPR

Security Monkey

by Netflix

CVEs (1)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2017-7266Med0.336.10.00Mar 26, 2017Netflix Security Monkey before 0.8.0 has an Open Redirect. The logout functionality accepted the "next" parameter which then redirects to any domain irrespective of the Host header.