Vulnerability DatabaseGHSA-cf57-c578-7jvv

GHSA-cf57-c578-7jvv
vulnerability analysis and mitigation

Overview

The vulnerability (GHSA-cf57-c578-7jvv) affects Anubis versions prior to 1.23.0, discovered in October 2025. When using subrequest authentication mode, Anubis failed to properly validate redirect URLs, allowing potential cross-site scripting (XSS) attacks through the redir parameter. The issue was initially reported by security researchers nijel and mbiesiad against Weblate (GitHub Advisory).

Technical details

The vulnerability stems from insufficient URL validation in the subrequest authentication mode. When processing requests, Anubis would accept and redirect to any URL scheme without proper validation. For example, a malicious request like GET https://example.com/.within.website/?redir=javascript:alert() would result in a response with Location: javascript:alert(). The vulnerability has been assigned a CVSS score of 0.0 (Low severity) with a vector string of CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N (GitHub Advisory).

Impact

While most modern browsers block redirects to javascript: URLs, the vulnerability could potentially trigger dangerous behavior in certain scenarios, particularly when using custom protocols for third-party applications. The issue affects all users implementing subrequest authentication in Anubis versions before 1.23.0 (GitHub Advisory).

Mitigation and workarounds

The vulnerability has been patched in Anubis version 1.23.0. The fix includes additional validation at several steps of the flow to prevent open redirects in subrequest auth mode and implements automated testing to prevent similar issues in the future (Anubis Commit).

Additional resources


SourceThis report was generated using AI

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management