Security Advisory

CVE-2025-64116

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-10-30 17:32:41
Last updated 2025-10-31 16:50:03
Assigner GitHub_M
State PUBLISHED

Description

Movary is a web application to track, rate and explore your movie watch history. Prior to 0.69.0, the login page accepts a redirect parameter without validation, allowing attackers to redirect authenticated users to arbitrary external sites. This vulnerability is fixed in 0.69.0.