Open Source Human Resource Management System Vulnerability in Horilla
CVE-2025-47789
6.1MEDIUM
What is CVE-2025-47789?
Horilla, an open source Human Resource Management System, contains a vulnerability that enables attackers to craft URLs leading to external domains. Users clicking these URLs, particularly after logging in, are redirected to potentially malicious websites. This redirection can facilitate phishing attacks or impersonation, compromising user security and trust in the Horilla platform. The issue has been addressed in commit 1c72404df6888bb23af73c767fdaee5e6679ebd6 to safeguard users against such threats.
Affected Version(s)
horilla <= 1.3
