CNNVD-202510-3262 Information

CNNVD ID

CNNVD-202510-3262

CVE-2025-10355

  • CNNVD Published: 2025-10-23

Description (Chinese)

MOLGENIS EMX2是MOLGENIS开源的一个数据平台。 MOLGENIS EMX2 v11.14.0版本存在输入验证错误漏洞,该漏洞源于操纵重定向参数可能创建恶意URL,可能导致用户被重定向至钓鱼网站或其他恶意目的地。

Description (English)

MOLGENIS EMX2 is a data platform open to MOLGENIS. The MOLGENIS EMX2 v11.14.0 version has an input validation error loophole, which stems from the manipulation of re-direction parameters that may create malicious URLs and may lead to re-direction of users to fishing sites or other malicious destinations.

Hazard Level

High

Vulnerability Type

输入验证错误

Affected Vendor

MOLGENIS

Published

2025-10-23

Last Modified

2026-02-24

References

https://www.incibe.es/en/incibe-cert/notices/aviso/open-redirection-vulnerability-molgenis-emx2

Patch

https://github.com/molgenis/molgenis-emx2/releases

Share on: