Skip to main content
Planview Customer Success Center

What practices can I take to reduce "open redirect" security vulnerabilities?

Last Updated:    |  Applicable Hub Versions: All

Answer

If your original installation of Hub was on a version earlier than 18.4.8 (regardless of whether you've since upgraded to a later version), follow the steps below to remediate an "open redirect" security vulnerability:

  1. Click the User Administration Console link at the bottom of the Hub login screen.

  2. Click Clients on the left side menu.

  3. Click into the tasktop client.

  4. Find the Valid Redirect URIs field.

  5. Remove (click -) the current value which will be *.

  6. Add a new value of /* (need to type it in then click +").

  7. Save and exit the User Administration Console.

 

Note: If your original installation of Hub was on version 18.4.8 or later, no manual steps are needed. Valid redirect URI restrictions will already be configured for you.

Update 'Valid Redirect URIs' Field