CVE-2024-10812

An open redirect vulnerability exists in binary-husky/gpt_academic version 3.83. The vulnerability occurs when a user is redirected to a URL specified by user-controlled input in the 'file' parameter without proper validation or sanitization. This can be exploited by attackers to conduct phishing attacks, distribute malware, and steal user credentials.
References
Link Resource
https://huntr.com/bounties/51408ebd-e0be-489d-8088-f210087dbd6a Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:binary-husky:gpt_academic:3.83:*:*:*:*:*:*:*

History

14 Jul 2025, 15:00

Type Values Removed Values Added
Summary
  • (es) Existe una vulnerabilidad de redirección abierta en binary-husky/gpt_academic versión 3.83. Esta vulnerabilidad ocurre cuando un usuario es redirigido a una URL especificada por el usuario en el parámetro 'file' sin la validación ni la depuración adecuada. Los atacantes pueden aprovechar esta vulnerabilidad para realizar ataques de phishing, distribuir malware y robar credenciales de usuario.
First Time Binary-husky gpt Academic
Binary-husky
CPE cpe:2.3:a:binary-husky:gpt_academic:3.83:*:*:*:*:*:*:*
References () https://huntr.com/bounties/51408ebd-e0be-489d-8088-f210087dbd6a - () https://huntr.com/bounties/51408ebd-e0be-489d-8088-f210087dbd6a - Exploit, Third Party Advisory

20 Mar 2025, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-20 10:15

Updated : 2025-07-14 15:00


NVD link : CVE-2024-10812

Mitre link : CVE-2024-10812

CVE.ORG link : CVE-2024-10812


JSON object : View

Products Affected

binary-husky

  • gpt_academic
CWE
CWE-601

URL Redirection to Untrusted Site ('Open Redirect')