WSO2 is vulnerable to Open Redirect through multi-option URL in its authentication endpoint
Moderate severity
GitHub Reviewed
Published
Jun 2, 2025
to the GitHub Advisory Database
•
Updated Oct 7, 2025
Package
org.wso2.carbon.identity.framework:org.wso2.carbon.identity.application.authentication.endpoint.util
(Maven)
Affected versions
>= 6.0.0, < 7.0.111
< 5.25.707
Patched versions
7.0.111
5.25.707
Description
Published by the National Vulnerability Database
Jun 2, 2025
Published to the GitHub Advisory Database
Jun 2, 2025
Reviewed
Oct 7, 2025
Last updated
Oct 7, 2025
An open redirection vulnerability exists in multiple WSO2 products due to improper validation of the multi-option URL in the authentication endpoint when multi-option authentication is enabled. A malicious actor can craft a valid link that redirects users to an attacker-controlled site.
By exploiting this vulnerability, an attacker may trick users into visiting a malicious page, enabling phishing attacks to harvest sensitive information or perform other harmful actions.
References