CVE-2022-23184
07.02.2022, 03:15
In affected Octopus Server versions when the server HTTP and HTTPS bindings are configured to localhost, Octopus Server will allow open redirects.
Vendor | Product | Version |
---|---|---|
octopus | octopus_deploy | 0.9 ≤ 𝑥 ≤ 4.1.10 |
octopus | octopus_deploy | 2018.1.0 ≤ 𝑥 ≤ 2020.1.1 |
octopus | octopus_server | 2021.2.0 ≤ 𝑥 < 2021.2.8011 |
octopus | octopus_server | 2021.3.0 ≤ 𝑥 < 2021.3.11057 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration