Filtered by vendor Corezoid Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-55017 1 Corezoid 1 Corezoid 2025-10-02 7.5 High
Account Takeover in Corezoid 6.6.0 in the OAuth2 implementation via an open redirect in the redirect_uri parameter allows attackers to intercept authorization codes and gain unauthorized access to victim accounts.
CVE-2024-27592 1 Corezoid 1 Corezoid 2025-06-17 4.3 Medium
Open Redirect vulnerability in Corezoid Process Engine v6.5.0 allows attackers to redirect to arbitrary websites via appending a crafted link to /login/ in the login page URL.