Movary is a web application to track, rate and explore your movie watch history. Prior to 0.69.0, the login page accepts a redirect parameter without validation, allowing attackers to redirect authenticated users to arbitrary external sites. This vulnerability is fixed in 0.69.0.
Metrics
Affected Vendors & Products
References
History
Fri, 31 Oct 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 31 Oct 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Movary
Movary movary |
|
| Vendors & Products |
Movary
Movary movary |
Thu, 30 Oct 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Movary is a web application to track, rate and explore your movie watch history. Prior to 0.69.0, the login page accepts a redirect parameter without validation, allowing attackers to redirect authenticated users to arbitrary external sites. This vulnerability is fixed in 0.69.0. | |
| Title | Movary vulnerable to an open redirect | |
| Weaknesses | CWE-601 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published: 2025-10-30T17:32:41.434Z
Updated: 2025-10-31T16:50:03.914Z
Reserved: 2025-10-27T15:26:14.128Z
Link: CVE-2025-64116
Updated: 2025-10-31T16:49:46.515Z
Status : Received
Published: 2025-10-30T18:15:33.527
Modified: 2025-10-31T17:15:48.320
Link: CVE-2025-64116
No data.