Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')

DATE CVE VULNERABILITY TITLE RISK
2022-08-11 CVE-2022-28755 Open Redirect vulnerability in Zoom
The Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.11.0 are susceptible to a URL parsing vulnerability.
network
low complexity
zoom CWE-601
6.1
2022-08-05 CVE-2022-31657 Open Redirect vulnerability in VMWare products
VMware Workspace ONE Access and Identity Manager contain a URL injection vulnerability.
network
low complexity
vmware CWE-601
critical
9.8
2022-08-02 CVE-2021-23385 Open Redirect vulnerability in Flask-Security Project Flask-Security
This affects all versions of package Flask-Security.
network
low complexity
flask-security-project CWE-601
6.1
2022-07-28 CVE-2022-27509 Open Redirect vulnerability in Citrix Application Delivery Controller Firmware and Gateway
Unauthenticated redirection to a malicious website
network
low complexity
citrix CWE-601
6.1
2022-07-26 CVE-2022-30706 Open Redirect vulnerability in Twinkletoessoftware Booked
Open redirect vulnerability in Booked versions prior to 3.3 allows a remote unauthenticated attacker to redirect a user to an arbitrary web site and conduct a phishing attack by having a user to access a specially crafted URL.
network
low complexity
twinkletoessoftware CWE-601
6.1
2022-07-25 CVE-2022-35652 Open Redirect vulnerability in multiple products
An open redirect issue was found in Moodle due to improper sanitization of user-supplied data in mobile auto-login feature.
network
low complexity
moodle fedoraproject CWE-601
6.1
2022-07-14 CVE-2022-25803 Open Redirect vulnerability in Bestpractical Request Tracker
Best Practical Request Tracker (RT) before 5.0.3 has an Open Redirect via a ticket search.
network
low complexity
bestpractical CWE-601
6.1
2022-07-12 CVE-2022-33712 Open Redirect vulnerability in Samsung Camera
Intent redirection vulnerability using implict intent in Camera prior to versions 12.0.01.64 ,12.0.3.23, 12.0.0.98, 12.0.6.11, 12.0.3.19 in Android S(12) allows attacker to get sensitive information.
network
low complexity
samsung CWE-601
5.3
2022-07-08 CVE-2022-35406 Open Redirect vulnerability in Portswigger Burp Suite
A URL disclosure issue was discovered in Burp Suite before 2022.6.
network
low complexity
portswigger CWE-601
4.3
2022-07-01 CVE-2022-2250 Open Redirect vulnerability in Gitlab
An open redirect vulnerability in GitLab EE/CE affecting all versions from 11.1 prior to 14.10.5, 15.0 prior to 15.0.4, and 15.1 prior to 15.1.1, allows an attacker to redirect users to an arbitrary location if they trust the URL.
network
low complexity
gitlab CWE-601
6.1