Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')

DATE CVE VULNERABILITY TITLE RISK
2022-03-06 CVE-2022-0868 Open Redirect vulnerability in Uri.Js Project Uri.Js
Open Redirect in GitHub repository medialize/uri.js prior to 1.19.10.
network
low complexity
uri-js-project CWE-601
6.1
2022-03-06 CVE-2022-0869 Open Redirect vulnerability in Spirit-Project Spirit
Multiple Open Redirect in GitHub repository nitely/spirit prior to 0.12.3.
network
low complexity
spirit-project CWE-601
6.1
2022-03-04 CVE-2021-46379 Open Redirect vulnerability in Dlink Dir-850L Firmware 1.08Trb03
DLink DIR850 ET850-1.08TRb03 is affected by an incorrect access control vulnerability through URL redirection to untrusted site.
network
low complexity
dlink CWE-601
6.1
2022-03-02 CVE-2021-3654 Open Redirect vulnerability in multiple products
A vulnerability was found in openstack-nova's console proxy, noVNC.
network
low complexity
openstack redhat CWE-601
6.1
2022-02-28 CVE-2022-26156 Open Redirect vulnerability in Cherwell Service Management 10.2.3
An issue was discovered in the web application in Cherwell Service Management (CSM) 10.2.3.
network
low complexity
cherwell CWE-601
6.1
2022-02-28 CVE-2022-26158 Open Redirect vulnerability in Cherwell Service Management 10.2.3
An issue was discovered in the web application in Cherwell Service Management (CSM) 10.2.3.
network
low complexity
cherwell CWE-601
6.1
2022-02-25 CVE-2021-23495 Open Redirect vulnerability in Karma Project Karma
The package karma before 6.3.16 are vulnerable to Open Redirect due to missing validation of the return_url query parameter.
network
low complexity
karma-project CWE-601
6.1
2022-02-25 CVE-2022-24330 Open Redirect vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2021.2.1, a redirection to an external site was possible.
network
low complexity
jetbrains CWE-601
6.1
2022-02-24 CVE-2021-29217 Open Redirect vulnerability in HPE Oneview Global Dashboard
A remote URL redirection vulnerability was discovered in HPE OneView Global Dashboard version(s): Prior to 2.5.
network
low complexity
hpe CWE-601
6.1
2022-02-21 CVE-2022-0692 Open Redirect vulnerability in Alltube Project Alltube
Open Redirect on Rudloff/alltube in Packagist rudloff/alltube prior to 3.0.1.
network
low complexity
alltube-project CWE-601
6.1