← back
CVE-2022-28923mediumCWE-601

CVE-2022-28923

28Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendcvss 6.1epss 1.4%
exploitation probability
1.4%top 28% of all CVEs
observed exploitation
nono source reports it
Caddy v2.4.6 was discovered to contain an open redirection vulnerability which allows attackers to redirect users to phishing websites via crafted URLs.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Affected products
n/a · n/a