An unvalidated redirect was contained in Venueless' social login functionality and could be exploited for phishing using trusted domains.CreditsRajuReferenceshttps://github.com/venueless/venueless/security/advisories/GHSA-m87f-7c4r-w4p3