CVE-2024-25676
Severity CVSS v4.0:
Pending analysis
Type:
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
Publication date:
01/05/2024
Last modified:
30/05/2025
Description
An issue was discovered in ViewerJS 0.5.8. A script from the component loads content via URL TAGs without properly sanitizing it. This leads to both open redirection and out-of-band resource loading.
Impact
Base Score 3.x
4.70
Severity 3.x
MEDIUM



