Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-5936


An open redirect vulnerability exists in imartinez/privategpt version 0.5.0 due to improper handling of the 'file' parameter. This vulnerability allows attackers to redirect users to a URL specified by user-controlled input without proper validation or sanitization. The impact of this vulnerability includes potential phishing attacks, malware distribution, and credential theft.


Published

2024-06-27T19:15:18.317

Last Modified

2025-07-17T01:43:16.010

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.1 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-601

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application pribai privategpt 0.5.0 Yes

References