Open Redirect Vulnerability in lm-sys FastChat
CVE-2024-10908
6.1MEDIUM
What is CVE-2024-10908?
An open redirect vulnerability has been identified in lm-sys FastChat, specifically in Release v0.2.36. This vulnerability allows remote unauthenticated attackers to manipulate URLs in a way that redirects end-users to arbitrary external sites. Such exploitation could facilitate various malicious activities, including phishing attacks aimed at stealing credentials and distributing malware. Organizations using this version should take immediate action to mitigate potential risks associated with these types of attacks. For more detailed information, please refer to the Huntr entry.
Affected Version(s)
lm-sys/fastchat <= unspecified