Central Dogma versions before 0.78.0 contain an Open Redirect vulnerability that allows attackers to redirect users to untrusted sites via specially crafted URLs, potentially facilitating phishing attacks and credential theft.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| com.linecorp.centraldogma:centraldogma-server-auth-shiro(Maven) | 0 | 0.78.0 | N/A |
CVSS Metrics