CVE-2025-1300
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Published Feb 28, 2025
CWE ID 601
Summary
CVE-2025-1300 is a vulnerability affecting the CodeChecker web server, which is an analyzer tooling, defect database, and viewer extension for Clang Static Analyzer and Clang Tidy. The vulnerability involves an open redirect issue where missing protections against multiple slashes in the URL allow attackers to bypass security measures against CVE-2021-28861, leading to an open redirect pathway. This issue poses a risk to CodeChecker versions through 6.24.5.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Telefonaktiebolaget LM Ericsson