Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')

DATE CVE VULNERABILITY TITLE RISK
2022-02-08 CVE-2021-45328 Open Redirect vulnerability in Gitea
Gitea before 1.4.3 is affected by URL Redirection to Untrusted Site ('Open Redirect') via internal URLs.
network
low complexity
gitea CWE-601
6.1
2022-02-07 CVE-2022-23184 Open Redirect vulnerability in Octopus Deploy
In affected Octopus Server versions when the server HTTP and HTTPS bindings are configured to localhost, Octopus Server will allow open redirects.
network
low complexity
octopus CWE-601
6.1
2022-02-04 CVE-2021-45408 Open Redirect vulnerability in Seeddms 6.0.15
Open Redirect vulnerability exists in SeedDMS 6.0.15 in out.Login.php, which llows remote malicious users to redirect users to malicious sites using the "referuri" parameter.
network
low complexity
seeddms CWE-601
6.1
2022-01-30 CVE-2022-22919 Open Redirect vulnerability in Adenza Axiomsl Controllerview
Adenza AxiomSL ControllerView through 10.8.1 allows redirection for SSO login URLs.
network
low complexity
adenza CWE-601
6.1
2022-01-28 CVE-2022-23599 Open Redirect vulnerability in Plone
Products.ATContentTypes are the core content types for Plone 2.1 - 4.3.
network
low complexity
plone CWE-601
6.1
2022-01-14 CVE-2021-38678 Open Redirect vulnerability in Qnap Qcalagent
An open redirect vulnerability has been reported to affect QNAP device running QcalAgent.
network
low complexity
qnap CWE-601
6.1
2022-01-10 CVE-2021-44528 Open Redirect vulnerability in Rubyonrails Rails 6.0.4.2/6.1.4.2/7.0.0
A open redirect vulnerability exists in Action Pack >= 6.0.0 that could allow an attacker to craft a "X-Forwarded-Host" headers in combination with certain "allowed host" formats can cause the Host Authorization middleware in Action Pack to redirect users to a malicious website.
network
low complexity
rubyonrails CWE-601
6.1
2022-01-05 CVE-2022-21651 Open Redirect vulnerability in Shopware
Shopware is an open source e-commerce software platform.
network
low complexity
shopware CWE-601
6.1
2021-12-24 CVE-2021-20875 Open Redirect vulnerability in Groupsession
Open redirect vulnerability in GroupSession Free edition ver5.1.1 and earlier, GroupSession byCloud ver5.1.1 and earlier, and GroupSession ZION ver5.1.1 and earlier allows a remote unauthenticated attacker to redirect users to arbitrary web sites and conduct phishing attacks by having a user to access a specially crafted URL.
network
low complexity
groupsession CWE-601
6.1
2021-12-17 CVE-2021-40852 Open Redirect vulnerability in Tcman GIM 11.0/8.0
TCMAN GIM is affected by an open redirect vulnerability.
network
low complexity
tcman CWE-601
6.1