CVE-2025-12140: The application contains an insecure 'redirectToUrl' mechanism that incorrectly processes the value of the 'redirectUrl…

Important cybersecurity news update

The application contains an insecure 'redirectToUrl' mechanism that incorrectly processes the value of the 'redirectUrlParameter' parameter. The application interprets the entered string of characters as a Java expression, allowing an unauthenticated attacer to perform arbitrary code execution. This issue was fixed in version wu#2016.1.5513#0#20251014_113353

Related CVEs