CVE-2015-1051: Context Project Context

Medium severity, CVSS 5.8. EPSS: 2.2% chance of exploitation in the next 30 days.

Open redirect vulnerability in the Context UI module in the Context module 7.x-3.x before 7.x-3.6 for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the destination parameter.

Affected products

  • Context Project Context: version 7.x-3.0 only; version 7.x-3.1 only; version 7.x-3.2 only; version 7.x-3.3 only; version 7.x-3.4 only; version 7.x-3.5 only
  • Fedoraproject Fedora: version 20 only; version 21 only

Published 2015-01-15. Last modified 2026-06-17.