Open Redirect Vulnerability in HotelRunner B2B Software
CVE-2025-4296
4.7MEDIUM
What is CVE-2025-4296?
A vulnerability exists in HotelRunner's B2B product that allows attackers to perform URL Redirection to untrusted sites, potentially leading to forceful browsing. This issue puts users at risk by enabling unauthorized access and exploitation of the platform before its patch on June 4, 2025.
Affected Version(s)
B2B 0 < 04.06.2025