Loading
Open redirection vulnerability in IceWarp Mail Server affecting version 11.4.0. This vulnerability allows an attacker to redirect a user to any domain by sending a malicious URL to the victim, for example “ https://icewarp.domain.com//<MALICIOUS_DOMAIN>/%2e%2e” https://icewarp.domain.com///%2e%2e” . This vulnerability has been tested in Firefox.
Use CWE-601, Icewarp vendor hub and Mail Server product page to widen CVE-2025-40630 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-39699, CVE-2020-14066 and CVE-2020-14065 for nearby disclosures in the same product family.