Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-601 (指向未可信站点的URL重定向(开放重定向)) — Vulnerability Class 712

712 vulnerabilities classified as CWE-601 (指向未可信站点的URL重定向(开放重定向)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-35652 Moodle 输入验证错误漏洞 — Moodle 6.1 -2022-07-25
CVE-2022-31151 Uncleared cookies on cross-host/cross-origin redirect in undici — undici 3.7 Low2022-07-20
CVE-2017-20119 TrueConf Server change-lang redirect — Server 3.5 Low2022-06-29
CVE-2022-2252 Open Redirect in microweber/microweber — microweber/microweber 6.1 -2022-06-29
CVE-2022-23078 Habitica - Open redirect in login page — habitica 6.1 -2022-06-22
CVE-2022-31040 Open Redirect in open-forms — open-forms 7.1 High2022-06-13
CVE-2022-29214 URL Redirection to Untrusted Site ('Open Redirect') in next-auth — next-auth 6.1 Medium2022-05-20
CVE-2022-29170 Grafana Enterprise datasource network restrictions bypass via HTTP redirects — grafana 6.6 Medium2022-05-20
CVE-2022-30992 Open redirect via user-controlled query parameter — Acronis Cyber Protect 15 6.1 -2022-05-18
CVE-2022-1702 SonicWall SMA1000 series 输入验证错误漏洞 — SonicWall SMA1000 6.1 -2022-05-13
CVE-2022-22797 Sysaid – sysaid Open Redirect — Sysaid 4.6 Medium2022-05-12
CVE-2022-1209 Ultimate Member <= 2.3.1 - Arbitrary Redirect — Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin 4.3 Medium2022-05-10
CVE-2021-44054 Open redirect — QuTScloud 4.3 Medium2022-05-05
CVE-2022-20794 Cisco TelePresence Collaboration Endpoint and RoomOS Software Vulnerabilities — Cisco RoomOS Software 6.5 Medium2022-05-04
CVE-2022-20764 Cisco TelePresence Collaboration Endpoint and RoomOS Software Vulnerabilities — Cisco RoomOS Software 6.5 Medium2022-05-04
CVE-2022-26326 Potential open redirection vulnerability in NetIQ Access Manager versions prior to version 5.0.2 — NetIQ Access Manager 4.0 Medium2022-05-02
CVE-2022-24887 Open Redirect in Nextcloud Talk — security-advisories 4.3 Medium2022-04-27
CVE-2021-25111 English WordPress Admin < 1.5.2 - Unauthenticated Open Redirect — English WordPress Admin 6.1 -2022-04-25
CVE-2022-1254 SWG URL redirection vulnerability — Secure Web Gateway 6.1 Medium2022-04-20
CVE-2022-1019 Automated Logic WebCtrl Server Open Redirection Vulnerability — WebCtrl Server 5.2 Medium2022-04-19
CVE-2022-0645 Open redirect vulnerability via endpoint authorize_and_redirect/?redirect= in posthog/posthog — posthog/posthog 6.1 -2022-04-19
CVE-2020-25154 B. Braun SpaceCom, Battery Pack SP with Wi-Fi, and Data module compactplus — SpaceCom 5.4 Medium2022-04-14
CVE-2022-28215 SAP NetWeaver ABAP Server 输入验证错误漏洞 — SAP NetWeaver ABAP Server and ABAP Platform 4.7 -2022-04-12
CVE-2022-24794 Open Redirect in express-openid-connect — express-openid-connect 7.5 High2022-03-31
CVE-2005-10001 Netegrity SiteMinder Login smpwservicescgi.exe redirect — SiteMinder 5.4 Medium2022-03-28
CVE-2022-24776 Open Redirect in Flask-AppBuilder — Flask-AppBuilder 6.1 Medium2022-03-24
CVE-2022-1058 Open Redirect on login in go-gitea/gitea — go-gitea/gitea 6.1 -2022-03-24
CVE-2022-0165 Page Builder KingComposer <= 2.9.6 - Open Redirect — Page Builder: KingComposer – Free Drag and Drop page builder by King-Theme 6.1 -2022-03-14
CVE-2022-24739 Server-Side Request Forgery (SSRF) and URL Redirection to Untrusted Site ('Open Redirect') in alltube — alltube 7.3 High2022-03-08
CVE-2021-41180 Geolocation preview links can be set to arbitrary links in nextcloud talk — security-advisories 4.7 Medium2022-03-08

Vulnerabilities classified as CWE-601 (指向未可信站点的URL重定向(开放重定向)) represent 712 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.