Pie Register < 3.8.2.3 - Open Redirect
55Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actcvss 5.4epss 24%
from disclosure to weapon
Published on NVDFeb 27
VulnCheck+273d
exploitation probability
24%top 2% of all CVEs
observed exploitation
yesVulnCheck
The Registration Forms WordPress plugin before 3.8.2.3 does not properly validate the redirection URL when logging in and login out, leading to an Open Redirect vulnerability
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Affected products
Unknown · Registration Forms