OpenAM Consortium Edition version 14.0.0 provided by OpenAM Consortium contains an open redirect vulnerability (CWE-601). When accessing an affected server through some specially crafted URL, the user may be redirected to an arbitrary website.
| Software | From | Fixed in |
|---|---|---|
| osstech / openam | 13.0.0 | 13.0.0-183.x |
| osstech / openam | 14.0.0 | 14.2.0-2.x |