action/cookie.php in ecrire in SPIP before 4.4.15 is prone to an open redirect vulnerability.Referenceshttps://blog.spip.net/Mise-a-jour-de-securite-sortie-de-SPIP-4-4-15.html?lang=frhttps://git.spip.net/spip/spip/-/commit/75629034697ab52a963a340afd10930407e1cd55https://git.spip.net/spip/ecrire/-/commit/a22cb8a56f1e37ff3854b73ff3f66aa3df47070a