An open redirect vulnerability in Rocket.Chat versions...
Unreviewed
Published
Apr 10, 2026
to the GitHub Advisory Database
•
Updated Apr 10, 2026
Description
Published by the National Vulnerability Database
Apr 10, 2026
Published to the GitHub Advisory Database
Apr 10, 2026
Last updated
Apr 10, 2026
An open redirect vulnerability in Rocket.Chat versions prior to 8.4.0 allows users to be redirected to arbitrary URLs by manipulating parameters within a SAML endpoint.
References