An Open Redirect vulnerability was found in osTicky2 below 2.2.8. osTicky (osTicket Bridge) by SmartCalc is a Joomla 3.x extension that provides Joomla fronted integration with osTicket, a popular Support ticket system. The Open Redirect vulnerability allows attackers to control the return parameter in the URL to a base64 malicious URL.
                
            References
                    | Link | Resource | 
|---|---|
| https://github.com/solracsf/osTicky | Product | 
| https://github.com/solracsf/osTicky | Product | 
Configurations
                    History
                    04 Jun 2025, 21:08
| Type | Values Removed | Values Added | 
|---|---|---|
| CPE | cpe:2.3:a:smartcalc:osticky:*:*:*:*:*:joomla\!:*:* | |
| First Time | Smartcalc osticky Smartcalc | |
| References | () https://github.com/solracsf/osTicky - Product | 
Information
                Published : 2024-02-15 21:15
Updated : 2025-06-04 21:08
NVD link : CVE-2024-21728
Mitre link : CVE-2024-21728
CVE.ORG link : CVE-2024-21728
JSON object : View
Products Affected
                smartcalc
- osticky
CWE
                
                    
                        
                        CWE-601
                        
            URL Redirection to Untrusted Site ('Open Redirect')
