CVE-2021-22036

Publication date

2021-10-13 15:52:00

Family

vmware

State

PUBLISHED

Description

VMware vRealize Orchestrator ((8.x prior to 8.6) contains an open redirect vulnerability due to improper path handling. A malicious actor may be able to redirect victim to an attacker controlled domain due to improper path handling in vRealize Orchestrator leading to sensitive information disclosure.