CVE-2016-0928: Pivotal Cloud Foundry Elastic Runtime

High severity, CVSS 7.4. EPSS: 1.4% chance of exploitation in the next 30 days.

Multiple open redirect vulnerabilities in Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.6.30 and 1.7.x before 1.7.8 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

Affected products

  • Pivotal Cloud Foundry Elastic Runtime: up to and including 1.6.29; version 1.7.0 only; version 1.7.1 only; version 1.7.2 only; version 1.7.3 only; version 1.7.4 only; …

Published 2016-09-18. Last modified 2026-06-17.