Open redirect in OpenMetadata - #VU151683
Published: September 22, 2026
Vulnerability details
The vulnerability allows a remote attacker to take over a victim's session.
The vulnerability exists due to improper validation of redirect URLs in the SAML login callback handling when processing a callback parameter during SAML login. A remote attacker can send a crafted login link specifying an external callback URL to take over a victim's session.
User interaction is required for the victim to complete SAML authentication through the crafted link.