Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-601 (指向未可信站点的URL重定向(开放重定向)) — Vulnerability Class 712

712 vulnerabilities classified as CWE-601 (指向未可信站点的URL重定向(开放重定向)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-22308 WordPress Simple Membership Plugin <= 4.4.1 is vulnerable to Open Redirection — Simple Membership 3.4 Low2024-01-24
CVE-2024-0854 Synology DiskStation Manager 输入验证错误漏洞 — DiskStation Manager (DSM) 5.4 Medium2024-01-24
CVE-2024-0781 CodeAstro Internet Banking System pages_client_signup.php redirect — Internet Banking System 3.5 Low2024-01-22
CVE-2023-50963 IBM Storage Defender HTTP HOST header injection — Storage Defender - Data Protect 6.5 Medium2024-01-19
CVE-2024-22400 Open redirect in user_saml via RelayState parameter in Nextcloud User Saml — security-advisories 3.1 Low2024-01-18
CVE-2024-0319 Open Redirect vulnerability in FireEye HXTool — FireEye HXTool 5.4 Medium2024-01-15
CVE-2024-0545 CodeCanyon RISE Ultimate Project Manager signin redirect — RISE Ultimate Project Manager 5.3 Medium2024-01-15
CVE-2024-21734 URL Redirection vulnerability in SAP Marketing (Contacts App) — SAP Marketing (Contacts App) 3.7 Low2024-01-09
CVE-2023-6552 Open redirect in TasmoAdmin — TasmoAdmin 6.1AIMediumAI2024-01-08
CVE-2024-21641 Flarum's Logout Route allows open redirects — framework 6.5 Medium2024-01-05
CVE-2023-51517 WordPress Calculated Fields Form Plugin <= 1.2.28 is vulnerable to Open Redirection — Calculated Fields Form 4.1 Medium2023-12-29
CVE-2023-51675 WordPress Advanced Access Manager Plugin <= 6.9.18 is vulnerable to Open Redirection — Advanced Access Manager – Restricted Content, Users & Roles, Enhanced Security and More 4.7 Medium2023-12-29
CVE-2023-32517 WordPress MailChimp Subscribe Forms Plugin <= 4.0.9.3 is vulnerable to Open Redirection — MailChimp Subscribe Form, Optin Builder, PopUp Builder, Form Builder 4.7 Medium2023-12-29
CVE-2023-32101 WordPress Library Viewer Plugin <= 2.0.6 is vulnerable to Open Redirection — Library Viewer 4.7 Medium2023-12-29
CVE-2023-31237 WordPress Zephyr Project Manager Plugin <= 3.3.9 is vulnerable to Open Redirection — Zephyr Project Manager 4.7 Medium2023-12-29
CVE-2023-31229 WordPress WP Directory Kit Plugin <= 1.1.9 is vulnerable to Open Redirection — WP Directory Kit 4.7 Medium2023-12-29
CVE-2023-31095 WordPress Integration for Contact Form 7 HubSpot Plugin <= 1.2.8 is vulnerable to Open Redirection — Integration for HubSpot and Contact Form 7, WPForms, Elementor, Ninja Forms 4.7 Medium2023-12-29
CVE-2023-28786 WordPress Solid Security Plugin <= 8.1.4 is vulnerable to Open Redirection — Solid Security – Password, Two Factor Authentication, and Brute Force Protection 3.7 Low2023-12-29
CVE-2023-50704 URL Redirection to Untrusted Site ('Open Redirect') in EFACEC UC 500E — UC 500E 4.3 Medium2023-12-19
CVE-2023-46624 WordPress Parcel Pro Plugin <= 1.6.11 is vulnerable to Open Redirection — Parcel Pro 4.7 Medium2023-12-19
CVE-2023-35883 WordPress Core Web Vitals & PageSpeed Booster Plugin <= 1.0.12 is vulnerable to Open Redirection — Core Web Vitals & PageSpeed Booster 4.7 Medium2023-12-19
CVE-2023-37982 WordPress Integration for Contact Form 7 and Salesforce Plugin <= 1.3.3 is vulnerable to Open Redirection — Integration for Salesforce and Contact Form 7, WPForms, Elementor, Ninja Forms 4.7 Medium2023-12-19
CVE-2023-38478 WordPress Integration for WooCommerce and QuickBooks Plugin <= 1.2.3 is vulnerable to Open Redirection — Integration for WooCommerce and QuickBooks 4.7 Medium2023-12-19
CVE-2023-38481 WordPress Integration for WooCommerce and Zoho CRM Plugin < 1.3.7 is vulnerable to Open Redirection — Integration for WooCommerce and Zoho CRM, Books, Invoice, Inventory, Bigin 4.7 Medium2023-12-19
CVE-2023-40602 WordPress Doofinder for WooCommerce Plugin <= 1.5.49 is vulnerable to Open Redirection — Doofinder WP & WooCommerce Search 4.7 Medium2023-12-19
CVE-2023-41648 WordPress Login and Logout Redirect Plugin <= 2.0.3 is vulnerable to Open Redirection — Login and Logout Redirect 4.7 Medium2023-12-19
CVE-2023-45105 WordPress affiliate-toolkit – WordPress Affiliate Plugin Plugin <= 3.3.9 is vulnerable to Open Redirection — affiliate-toolkit – WordPress Affiliate Plugin 4.7 Medium2023-12-19
CVE-2023-6927 Keycloak: open redirect via "form_post.jwt" jarm response mode — Red Hat build of Keycloak 22 4.6 Medium2023-12-18
CVE-2023-6545 Beckhoff: Open redirect in TwinCAT/BSD package authelia-bhf — authelia-bhf of TwinCAT/BSD 4.7 Medium2023-12-14
CVE-2023-46750 Apache Shiro: URL Redirection to Untrusted Site ('Open Redirect') vulnerability in FORM authentication feature Apache Shiro. — Apache Shiro 6.1AIMediumAI2023-12-14

Vulnerabilities classified as CWE-601 (指向未可信站点的URL重定向(开放重定向)) represent 712 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.