Open redirect vulnerability in IBM Rational Requirements Composer before 4.0.4 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via a crafted URL.
| Software | From | Fixed in |
|---|---|---|
| ibm / rational_requirements_composer | 4.0.1 | 4.0.1.x |
| ibm / rational_requirements_composer | 4.0.0 | 4.0.0.x |
| ibm / rational_requirements_composer | 4.0.2 | 4.0.2.x |
| ibm / rational_requirements_composer | - | 4.0.3.x |