An open redirect vulnerability in LabKey Server Community Edition prior to 18.3.0-61806.763 via the /__r1/ returnURL parameter allows an unauthenticated remote malicious user to redirect users to arbitrary web sites.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
labkey labkey server |