Vulnerability CVE-2024-27291


Published: 2024-03-21

Description:
Docassemble is an expert system for guided interviews and document assembly. Prior to 1.4.97, it is possible to create a URL that acts as an open redirect. The vulnerability has been patched in version 1.4.97 of the master branch.

 References:
https://github.com/jhpyle/docassemble/security/advisories/GHSA-7wxf-r2qv-9xwr
https://github.com/jhpyle/docassemble/commit/4801ac7ff7c90df00ac09523077930cdb6dea2aa

Copyright 2026, cxsecurity.com

 

Back to Top