CVE-2012-2727: Bryce Hamrick Janrain Capture

Medium severity, CVSS 5.8. EPSS: 2.3% chance of exploitation in the next 30 days.

Open redirect vulnerability in the Janrain Capture module 6.x-1.0 and 7.x-1.0 for Drupal, when synchronizing user data, allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the destination parameter.

Affected products

  • Bryce Hamrick Janrain Capture: version 6.x-1.0 only; version 7.x-1.0 only

Published 2012-06-27. Last modified 2026-06-16.