VYPR

CWE-601

URL Redirection to Untrusted Site ('Open Redirect')

BaseDraftLikelihood: Low

Description

The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-178

CVEs mapped to this weakness (1,692)

page 8 of 85
  • CVE-2024-2465HigMar 21, 2024
    risk 0.46cvss 7.1epss 0.01

    Open redirection vulnerability in CDeX application allows to redirect users to arbitrary websites via a specially crafted URL.This issue affects CDeX application versions through 5.7.1.

  • CVE-2024-22259HigMar 16, 2024
    risk 0.46cvss 8.1epss 0.03

    Applications that use UriComponentsBuilder in Spring Framework to parse an externally provided URL (e.g. through a query parameter) AND perform validation checks on the host of the parsed URL may be vulnerable to a open redirect https://cwe.mitre.org/data/definitions/601.html…

  • CVE-2023-31245HigMay 22, 2023
    risk 0.46cvss 7.1epss 0.00

    Devices using Snap One OvrC cloud are sent to a web address when accessing a web management interface using a HTTP connection. Attackers could impersonate a device and supply malicious information about the device’s web server interface. By supplying…

  • CVE-2022-35953HigAug 12, 2022
    risk 0.46cvss 7.1epss 0.01

    BookWyrm is a social network for tracking your reading, talking about books, writing reviews, and discovering what to read next. Some links in BookWyrm may be vulnerable to tabnabbing, a form of phishing that gives attackers an opportunity to redirect a user to a malicious site.…

  • CVE-2018-8913HigApr 1, 2019
    risk 0.46cvss 7.1epss 0.01

    Missing custom error page vulnerability in Synology Web Station before 2.1.3-0139 allows remote attackers to conduct phishing attacks via a crafted URL.

  • CVE-2019-3778MedMar 7, 2019
    risk 0.46cvss 6.5epss 0.15

    Spring Security OAuth, versions 2.3 prior to 2.3.5, and 2.2 prior to 2.2.4, and 2.1 prior to 2.1.4, and 2.0 prior to 2.0.17, and older unsupported versions could be susceptible to an open redirector attack that can leak an authorization code. A malicious user or attacker can…

  • CVE-2026-58230HigAug 11, 2026
    risk 0.45cvss 7.0epss 0.00

    SAP Approuter does not sufficiently validate certain token content under specific configurations. An unauthenticated attacker could send a specially crafted token to cause sensitive credential material to be sent to an attacker-controlled destination. The attack complexity is…

  • CVE-2026-25732HigFeb 6, 2026
    risk 0.45cvss 7.5epss 0.03

    NiceGUI is a Python-based UI framework. Prior to 3.7.0, NiceGUI's FileUpload.name property exposes client-supplied filename metadata without sanitization, enabling path traversal when developers use the pattern UPLOAD_DIR / file.name. Malicious filenames containing ../ sequences…

  • CVE-2021-37699MedAug 12, 2021
    risk 0.45cvss 6.9epss 0.01

    Next.js is an open source website development framework to be used with the React library. In affected versions specially encoded paths could be used when pages/_error.js was statically generated allowing an open redirect to occur to an external site. In general, this redirect…

  • CVE-2021-22873MedJan 26, 2021
    risk 0.45cvss 6.1epss 0.70

    Revive Adserver before 5.1.0 is vulnerable to open redirects via the `dest`, `oadest`, and/or `ct0` parameters of the lg.php and ck.php delivery scripts. Such open redirects had previously been available by design to allow third party ad servers to track such metrics when…

  • CVE-2020-8143MedApr 3, 2020
    risk 0.45cvss 6.1epss 0.70

    An Open Redirect vulnerability was discovered in Revive Adserver version < 5.0.5 and reported by HackerOne user hoangn144. A remote attacker could trick logged-in users to open a specifically crafted link and have them redirected to any destination.The CSRF protection of the…

  • CVE-2026-47045MedJul 21, 2026
    risk 0.44cvss 6.8epss 0.00

    Vulnerability in the JDBC component of Oracle Database Server. Supported versions that are affected are 19.3-19.31, 21.3-21.22 and 23.4.0-23.26.2. Easily exploitable vulnerability allows high privileged attacker having None privilege with network access via Oracle Net to…

  • CVE-2025-27900MedFeb 17, 2026
    risk 0.44cvss 6.8epss 0.00

    IBM DB2 Recovery Expert for LUW 5.5 Interim Fix 002 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL…

  • CVE-2025-36016MedJun 21, 2025
    risk 0.44cvss 6.8epss 0.00

    IBM Process Mining 2.0.1 IF001 and 2.0.1 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to…

  • CVE-2024-45082MedDec 18, 2024
    risk 0.44cvss 6.8epss 0.00

    IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.3 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulnerability to…

  • CVE-2024-43543MedOct 8, 2024
    risk 0.44cvss 6.8epss 0.01

    Windows Mobile Broadband Driver Remote Code Execution Vulnerability

  • CVE-2024-43536MedOct 8, 2024
    risk 0.44cvss 6.8epss 0.01

    Windows Mobile Broadband Driver Remote Code Execution Vulnerability

  • CVE-2021-46379MedMar 4, 2022
    risk 0.44cvss 6.1epss 0.16

    DLink DIR850 ET850-1.08TRb03 is affected by an incorrect access control vulnerability through URL redirection to untrusted site.

  • CVE-2021-20031MedOct 12, 2021
    risk 0.44cvss 6.1epss 0.13

    A Host Header Redirection vulnerability in SonicOS potentially allows a remote attacker to redirect firewall management users to arbitrary web domains.

  • CVE-2021-29622MedMay 19, 2021
    risk 0.44cvss 6.5epss 0.20

    Prometheus is an open-source monitoring system and time series database. In 2.23.0, Prometheus changed its default UI to the New ui. To ensure a seamless transition, the URL's prefixed by /new redirect to /. Due to a bug in the code, it is possible for an attacker to craft an…