CVE-2022-28923
28Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendcvss 6.1epss 1.4%
exploitation probability
1.4%top 28% of all CVEs
observed exploitation
nono source reports it
Caddy v2.4.6 was discovered to contain an open redirection vulnerability which allows attackers to redirect users to phishing websites via crafted URLs.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Affected products
n/a · n/a