Skip to content

Fix security issues #75

@kelson42

Description

@kelson42
  • [critical] Remote code execution on metrics.kiwix.org: metrics.kiwix.org hosts a vulnerable Kibana instance which may lead to full website compromise. Suggested Fix: Upgrade “Kibana” software to mitigate this vulnerability
  • [medium] open redirect on metrics.kiwix.org: metrics.kiwix.org does not properly check the request and may redirect legitimate
    users to phishing or malicious websites with a URL like https://metrics.kiwix.org//evil.com/*

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions