Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-601 (指向未可信站点的URL重定向(开放重定向)) — Vulnerability Class 712

712 vulnerabilities classified as CWE-601 (指向未可信站点的URL重定向(开放重定向)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2026-22912 SICK TDC-X401GL 安全漏洞 — TDC-X401GL 4.3 Medium2026-01-15
CVE-2026-0513 Open Redirect Vulnerability in SAP Supplier Relationship Management (SICF Handler in SRM Catalog) — SAP Supplier Relationship Management (SICF Handler in SRM Catalog) 4.7 Medium2026-01-13
CVE-2025-68470 React Router has unexpected external redirect via untrusted paths — react-router 6.5 Medium2026-01-10
CVE-2026-22032 Directus has open redirect in SAML — directus 4.3 Medium2026-01-08
CVE-2026-21879 Kanboard vulnerable to Open Redirect via protocol-relative URLs — kanboard 4.7 Medium2026-01-08
CVE-2019-25282 V-SOL GPON/EPON OLT Platform V2.03.62R_IPv6 v2.03 Open Redirect via bindProfile.html — V-SOL GPON/EPON OLT Platform 9.8 Critical2026-01-07
CVE-2025-61782 Open Redirect in OpenCTI's SAML Authentication Flow — opencti 5.4 Medium2026-01-07
CVE-2020-36912 Plexus anblick Digital Signage Management 3.1.13 Open Redirect via Pagina Parameter — Plexus anblick Digital Signage Management 9.8 Critical2026-01-06
CVE-2025-15112 Ksenia Security lares Home Automation 1.6 URL Redirection Vulnerability — lares 5.4 Medium2025-12-30
CVE-2025-15258 Edimax BR-6208AC Web-based Configuration formALGSetup redirect — BR-6208AC 3.5 Low2025-12-30
CVE-2025-15241 CloudPanel Community Edition HTTP Header users redirect — Community Edition 3.5 Low2025-12-30
CVE-2025-55060 Priority - CWE-601: URL Redirection to Untrusted Site ('Open Redirect') — Web 6.1 Medium2025-12-29
CVE-2025-68602 WordPress Accept Donations with PayPal plugin <= 1.5.2 - Open Redirection vulnerability — Accept Donations with PayPal & Stripe 4.7 Medium2025-12-24
CVE-2025-68509 WordPress User Submitted Posts plugin <= 20251121 - Open Redirection vulnerability — User Submitted Posts 4.7 Medium2025-12-24
CVE-2025-1885 Open Redirect in Restajet's Online Food Delivery System — Online Food Delivery System 5.4 Medium2025-12-19
CVE-2025-55254 HCL BigFix Remote Control is vulnerable to a Path-relative stylesheet import (PRSSI) — BigFix Remote Control 3.7 Low2025-12-17
CVE-2025-34439 AVideo < 20.1 Open Redirect via cancelUri Parameter — AVideo 6.1AIMediumAI2025-12-17
CVE-2025-34440 AVideo < 20.1 Open Redirect via siteRedirectUri Parameter — AVideo 6.1AIMediumAI2025-12-17
CVE-2025-62690 Open redirect in error page when link opened in new tab — Mattermost 3.1 Low2025-12-17
CVE-2023-53901 WBCE CMS 1.6.1 Cross-Site Scripting and Open Redirect Vulnerability — WBCE CMS 5.4 Medium2025-12-16
CVE-2025-64250 WordPress Directorist plugin <= 8.6.6 - Open Redirection vulnerability — Directorist 4.7 Medium2025-12-16
CVE-2025-14692 Mayan EDMS authentication redirect — EDMS 4.3 Medium2025-12-14
CVE-2025-14451 Solutions Ad Manager <= 1.0.0 - Unauthenticated Open Redirect via 'sam-redirect-to' Parameter — Solutions Ad Manager 4.7 Medium2025-12-13
CVE-2025-34504 KodExplorer 4.52 Open Redirect Vulnerability via User Login Endpoint — KodExplorer 6.1AIMediumAI2025-12-11
CVE-2025-67713 Miniflux 2 has an Open Redirect via protocol-relative `redirect_url` — v2 6.1AIMediumAI2025-12-11
CVE-2025-67502 Taguette does not safeguard against Open Redirect — taguette 5.4 Medium2025-12-09
CVE-2025-67587 WordPress WP Gravity Forms FreshDesk Plugin plugin <= 1.3.5 - Open Redirection vulnerability — WP Gravity Forms FreshDesk Plugin 4.7 Medium2025-12-09
CVE-2025-67585 WordPress Flexmls® IDX plugin <= 3.15.7 - Open Redirection vulnerability — Flexmls® IDX 6.1AIMediumAI2025-12-09
CVE-2025-20382 URL validation bypass through Views Dashboard in Splunk Enterprise — Splunk Enterprise 3.5 Low2025-12-03
CVE-2025-58044 JumpServer has an Open Redirect Vulnerability — jumpserver 6.1AIMediumAI2025-12-01

Vulnerabilities classified as CWE-601 (指向未可信站点的URL重定向(开放重定向)) represent 712 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.