Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')

DATE CVE VULNERABILITY TITLE RISK
2022-04-06 CVE-2022-27110 Open Redirect vulnerability in Orangehrm 4.10
OrangeHRM 4.10 is vulnerable to a Host header injection redirect via viewPersonalDetails endpoint.
network
low complexity
orangehrm CWE-601
5.4
2022-04-05 CVE-2022-27463 Open Redirect vulnerability in Wwbn Avideo
Open redirect vulnerability in objects/login.json.php in WWBN AVideo through 11.6, allows attackers to arbitrarily redirect users from a crafted url to the login page.
network
low complexity
wwbn CWE-601
6.1
2022-04-04 CVE-2022-1233 Open Redirect vulnerability in Uri.Js Project Uri.Js
URL Confusion When Scheme Not Supplied in GitHub repository medialize/uri.js prior to 1.19.11.
network
low complexity
uri-js-project CWE-601
6.1
2022-03-30 CVE-2022-23798 Open Redirect vulnerability in Joomla Joomla!
An issue was discovered in Joomla! 2.5.0 through 3.10.6 & 4.0.0 through 4.1.0.
network
low complexity
joomla CWE-601
6.1
2022-03-30 CVE-2022-26950 Open Redirect vulnerability in RSA Archer
Archer 6.x through 6.9 P2 (6.9.0.2) is affected by an open redirect vulnerability.
network
low complexity
rsa CWE-601
6.1
2022-03-28 CVE-2005-10001 Open Redirect vulnerability in Broadcom Symantec Siteminder 4.5.0/4.5.1
A vulnerability was found in Netegrity SiteMinder up to 4.5.1 and classified as critical.
network
low complexity
broadcom CWE-601
6.1
2022-03-28 CVE-2022-0283 Open Redirect vulnerability in Gitlab
An issue has been discovered affecting GitLab versions prior to 13.5.
network
low complexity
gitlab CWE-601
6.1
2022-03-24 CVE-2022-24776 Open Redirect vulnerability in Dpgaspar Flask-Appbuilder
Flask-AppBuilder is an application development framework, built on top of the Flask web framework.
network
low complexity
dpgaspar CWE-601
6.1
2022-03-24 CVE-2022-1058 Open Redirect vulnerability in Gitea
Open Redirect on login in GitHub repository go-gitea/gitea prior to 1.16.5.
network
low complexity
gitea CWE-601
6.1
2022-03-21 CVE-2022-27090 Open Redirect vulnerability in Chshcms Cscms 4.2
Cscms Music Portal System v4.2 was discovered to contain a redirection vulnerability via the backurl parameter.
network
low complexity
chshcms CWE-601
5.4