Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Bugzilla 2.19.3 through 2.20 does not properly handle "//" sequences in URLs when redirecting a user from the login form, which could cause it to generate a partial URL in a form action that causes the user's browser to send the form data to another domain.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Bugzilla 信息泄露漏洞
Vulnerability Description
Bugzilla 2.19.3到2.20在重定向登录表单中的用户时没有正确处理URL中的"//"序列,这可能导致在表单操作中生成部分URL,使用户的浏览器将表单数据发送到另一个域中。
CVSS Information
N/A
Vulnerability Type
N/A