An open redirect vulnerability in bentoml/bentoml v1.3.9 allows a remote unauthenticated attacker to redirect users to arbitrary websites via a specially crafted URL. This can be exploited for phishing attacks, malware distribution, and credential theft.
| Software | From | Fixed in |
|---|---|---|
bentoml
|
- | 1.3.9.x |