Open redirect in wger - #VU128289
Published: April 28, 2026
wger
Detailed vulnerability description
The vulnerability allows a remote user to redirect a victim's browser to an attacker-controlled site and disclose sensitive information.
The vulnerability exists due to url redirection to an untrusted site in the trainer_login view when handling a crafted ?next= parameter. A remote user can send a crafted link to redirect a victim's browser to an attacker-controlled site and disclose sensitive information.
User interaction is required, and exploitation occurs after the trainer successfully enters impersonation mode.