CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
Description
The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.
Hierarchy (View 1000)
Parents
Children
none
Related attack patterns (CAPEC)
CAPEC-178
CVEs mapped to this weakness (1,692)
page 82 of 85| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-47530 | Med | 0.00 | 5.4 | 0.00 | Sep 30, 2024 | Scout is a web-based visualizer for VCF-files. Open redirect vulnerability allows performing phishing attacks on users by redirecting them to malicious page. /login API endpoint is vulnerable to open redirect attack via next parameter due to absence of sanitization logic.… | ||
| CVE-2024-8412 | Med | 0.00 | 4.3 | 0.00 | Sep 4, 2024 | A vulnerability, which was classified as problematic, was found in LinuxOSsk Shakal-NG up to 1.3.3. Affected is an unknown function of the file comments/views.py. The manipulation of the argument next leads to open redirect. It is possible to launch the attack remotely. The name… | ||
| CVE-2024-34074 | Med | 0.00 | 6.1 | 0.01 | May 14, 2024 | Frappe is a full-stack web application framework. Prior to 15.26.0 and 14.74.0, the login page accepts redirect argument and it allowed redirect to untrusted external URls. This behaviour can be used by malicious actors for phishing. This vulnerability is fixed in 15.26.0 and… | ||
| CVE-2024-33661 | Cri | 0.00 | 9.1 | 0.01 | Apr 26, 2024 | Portainer before 2.20.0 allows redirects when the target is not index.yaml. | ||
| CVE-2022-36029 | Cri | 0.00 | 9.1 | 0.00 | Apr 25, 2024 | Greenlight is an end-user interface for BigBlueButton servers. Versions prior to 2.13.0 have an open redirect vulnerability in the Login page due to unchecked the value of the `return_to` cookie. Versions 2.13.0 contains a patch for the issue. | ||
| CVE-2022-36028 | Cri | 0.00 | 9.1 | 0.00 | Apr 25, 2024 | Greenlight is an end-user interface for BigBlueButton servers. Versions prior to 2.13.0 have an open redirect vulnerability in the Login page due to unchecked the value of the `return_to` cookie. Versions 2.13.0 contains a patch for the issue. | ||
| CVE-2024-24818 | Med | 0.00 | 5.9 | 0.01 | Mar 21, 2024 | EspoCRM is an Open Source Customer Relationship Management software. An attacker can inject arbitrary IP or domain in "Password Change" page and redirect victim to malicious page that could lead to credential stealing or another attack. This vulnerability is fixed in 8.1.2. | ||
| CVE-2024-28113 | Low | 0.00 | 3.5 | 0.00 | Mar 12, 2024 | Peering Manager is a BGP session management tool. In Peering Manager <=1.8.2, it is possible to redirect users to an arbitrary page using a crafted url. As a result users can be redirected to an unexpected location. This issue has been addressed in version 1.8.3. Users are… | ||
| CVE-2024-25715 | Med | 0.00 | 6.1 | 0.00 | Feb 11, 2024 | Glewlwyd SSO server 2.x through 2.7.6 allows open redirection via redirect_uri. | ||
| CVE-2024-22400 | Low | 0.00 | 3.1 | 0.00 | Jan 18, 2024 | Nextcloud User Saml is an app for authenticating Nextcloud users using SAML. In affected versions users can be given a link to the Nextcloud server and end up on a uncontrolled thirdparty server. It is recommended that the User Saml app is upgraded to version 5.1.5, 5.2.5, or… | ||
| CVE-2023-6552 | Med | 0.00 | 6.1 | 0.00 | Jan 8, 2024 | Lack of "current" GET parameter validation during the action of changing a language leads to an open redirect vulnerability. | ||
| CVE-2023-52263 | Med | 0.00 | 6.1 | 0.00 | Dec 30, 2023 | Brave Browser before 1.59.40 does not properly restrict the schema for WebUI factory and redirect. This is related to browser/brave_content_browser_client.cc and browser/ui/webui/brave_web_ui_controller_factory.cc. | ||
| CVE-2023-49281 | Med | 0.00 | 4.7 | 0.01 | Dec 1, 2023 | Calendarinho is an open source calendaring application to manage large teams of consultants. An Open Redirect issue occurs when a web application redirects users to external URLs without proper validation. This can lead to phishing attacks, where users are tricked into visiting… | ||
| CVE-2023-38998 | Med | 0.00 | 6.1 | 0.01 | Aug 9, 2023 | An open redirect in the Login page of OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 allows attackers to redirect a victim user to an arbitrary web site via a crafted URL. | ||
| CVE-2023-37624 | Med | 0.00 | 6.1 | 0.01 | Jul 26, 2023 | Netdisco before v2.063000 was discovered to contain an open redirect vulnerability. An attacker may exploit this vulnerability to redirect users to arbitrary web URLs by tricking the victim users to click on crafted links. | ||
| CVE-2023-3568 | Med | 0.00 | 6.3 | 0.00 | Jul 10, 2023 | Open Redirect in GitHub repository alextselegidis/easyappointments prior to 1.5.0. | ||
| CVE-2023-35948 | Med | 0.00 | 5.4 | 0.00 | Jul 6, 2023 | Novu provides an API for sending notifications through multiple channels. Versions prior to 0.16.0 contain an open redirect vulnerability in the "Sign In with GitHub" functionality of Novu's open-source repository. It could have allowed an attacker to force a victim into opening… | ||
| CVE-2023-35171 | Med | 0.00 | 4.1 | 0.01 | Jun 23, 2023 | NextCloud Server and NextCloud Enterprise Server provide file storage for Nextcloud, a self-hosted productivity platform. Starting in version 26.0.0 and prior to version 26.0.2, an attacker could supply a URL that redirects an unsuspecting victim from a legitimate domain to an… | ||
| CVE-2023-0748 | Med | 0.00 | 6.4 | 0.01 | Feb 8, 2023 | Open Redirect in GitHub repository btcpayserver/btcpayserver prior to 1.7.6. | ||
| CVE-2022-39359 | Med | 0.00 | 6.5 | 0.01 | Oct 26, 2022 | Metabase is data visualization software. Prior to versions 0.44.5, 1.44.5, 0.43.7, 1.43.7, 0.42.6, 1.42.6, 0.41.9, and 1.41.9, custom GeoJSON map URL address would follow redirects to addresses that were otherwise disallowed, like link-local or private-network. This issue is… |
- risk 0.00cvss 5.4epss 0.00
Scout is a web-based visualizer for VCF-files. Open redirect vulnerability allows performing phishing attacks on users by redirecting them to malicious page. /login API endpoint is vulnerable to open redirect attack via next parameter due to absence of sanitization logic.…
- risk 0.00cvss 4.3epss 0.00
A vulnerability, which was classified as problematic, was found in LinuxOSsk Shakal-NG up to 1.3.3. Affected is an unknown function of the file comments/views.py. The manipulation of the argument next leads to open redirect. It is possible to launch the attack remotely. The name…
- risk 0.00cvss 6.1epss 0.01
Frappe is a full-stack web application framework. Prior to 15.26.0 and 14.74.0, the login page accepts redirect argument and it allowed redirect to untrusted external URls. This behaviour can be used by malicious actors for phishing. This vulnerability is fixed in 15.26.0 and…
- risk 0.00cvss 9.1epss 0.01
Portainer before 2.20.0 allows redirects when the target is not index.yaml.
- risk 0.00cvss 9.1epss 0.00
Greenlight is an end-user interface for BigBlueButton servers. Versions prior to 2.13.0 have an open redirect vulnerability in the Login page due to unchecked the value of the `return_to` cookie. Versions 2.13.0 contains a patch for the issue.
- risk 0.00cvss 9.1epss 0.00
Greenlight is an end-user interface for BigBlueButton servers. Versions prior to 2.13.0 have an open redirect vulnerability in the Login page due to unchecked the value of the `return_to` cookie. Versions 2.13.0 contains a patch for the issue.
- risk 0.00cvss 5.9epss 0.01
EspoCRM is an Open Source Customer Relationship Management software. An attacker can inject arbitrary IP or domain in "Password Change" page and redirect victim to malicious page that could lead to credential stealing or another attack. This vulnerability is fixed in 8.1.2.
- risk 0.00cvss 3.5epss 0.00
Peering Manager is a BGP session management tool. In Peering Manager <=1.8.2, it is possible to redirect users to an arbitrary page using a crafted url. As a result users can be redirected to an unexpected location. This issue has been addressed in version 1.8.3. Users are…
- risk 0.00cvss 6.1epss 0.00
Glewlwyd SSO server 2.x through 2.7.6 allows open redirection via redirect_uri.
- risk 0.00cvss 3.1epss 0.00
Nextcloud User Saml is an app for authenticating Nextcloud users using SAML. In affected versions users can be given a link to the Nextcloud server and end up on a uncontrolled thirdparty server. It is recommended that the User Saml app is upgraded to version 5.1.5, 5.2.5, or…
- risk 0.00cvss 6.1epss 0.00
Lack of "current" GET parameter validation during the action of changing a language leads to an open redirect vulnerability.
- risk 0.00cvss 6.1epss 0.00
Brave Browser before 1.59.40 does not properly restrict the schema for WebUI factory and redirect. This is related to browser/brave_content_browser_client.cc and browser/ui/webui/brave_web_ui_controller_factory.cc.
- risk 0.00cvss 4.7epss 0.01
Calendarinho is an open source calendaring application to manage large teams of consultants. An Open Redirect issue occurs when a web application redirects users to external URLs without proper validation. This can lead to phishing attacks, where users are tricked into visiting…
- risk 0.00cvss 6.1epss 0.01
An open redirect in the Login page of OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 allows attackers to redirect a victim user to an arbitrary web site via a crafted URL.
- risk 0.00cvss 6.1epss 0.01
Netdisco before v2.063000 was discovered to contain an open redirect vulnerability. An attacker may exploit this vulnerability to redirect users to arbitrary web URLs by tricking the victim users to click on crafted links.
- risk 0.00cvss 6.3epss 0.00
Open Redirect in GitHub repository alextselegidis/easyappointments prior to 1.5.0.
- risk 0.00cvss 5.4epss 0.00
Novu provides an API for sending notifications through multiple channels. Versions prior to 0.16.0 contain an open redirect vulnerability in the "Sign In with GitHub" functionality of Novu's open-source repository. It could have allowed an attacker to force a victim into opening…
- risk 0.00cvss 4.1epss 0.01
NextCloud Server and NextCloud Enterprise Server provide file storage for Nextcloud, a self-hosted productivity platform. Starting in version 26.0.0 and prior to version 26.0.2, an attacker could supply a URL that redirects an unsuspecting victim from a legitimate domain to an…
- risk 0.00cvss 6.4epss 0.01
Open Redirect in GitHub repository btcpayserver/btcpayserver prior to 1.7.6.
- risk 0.00cvss 6.5epss 0.01
Metabase is data visualization software. Prior to versions 0.44.5, 1.44.5, 0.43.7, 1.43.7, 0.42.6, 1.42.6, 0.41.9, and 1.41.9, custom GeoJSON map URL address would follow redirects to addresses that were otherwise disallowed, like link-local or private-network. This issue is…