WordPress wpForo Forum < 1.9.7 is susceptible to an open redirect vulnerability because the plugin did not validate the redirect_to parameter in the login form of the forum, leading to an open redirect issue after a successful login.
View the template here CVE-2021-24406.yaml
References:
https://github.com/ARPSyndicate/cvemon