CVE-2025-32379 | koajs koa up to 2.16.0/3.0.0-alpha.4 ctx.redirect cross site scripting (GHSA-x2rg-q646-7m2v / WID-SEC-2025-2424)
A vulnerability categorized as problematic has been discovered in koajs koa up to 2.16.0/3.0.0-alpha.4. This affects the function ctx.redirect. Such manipulation leads to cross site scripting.
This vulnerability is referenced as CVE-2025-32379. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.