Security Advisory
CVE-2021-24288
6.1
MEDIUM
Vulnerability Description
When subscribing using AcyMailing, the 'redirect' parameter isn't properly sanitized. Turning the request from POST to GET, an attacker can craft a link containing a potentially malicious landing page and send it to the victim.
Published Date
May 17, 2021
Official Source
NIST NVD Advisory