Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')

DATE CVE VULNERABILITY TITLE RISK
2021-07-30 CVE-2021-37746 Open Redirect vulnerability in multiple products
textview_uri_security_check in textview.c in Claws Mail before 3.18.0, and Sylpheed through 3.7.0, does not have sufficient link checks before accepting a click.
6.1
2021-07-30 CVE-2021-20789 Open Redirect vulnerability in Groupsession products
Open redirect vulnerability in GroupSession (GroupSession Free edition from ver2.2.0 to the version prior to ver5.1.0, GroupSession byCloud from ver3.0.3 to the version prior to ver5.1.0, and GroupSession ZION from ver3.0.3 to the version prior to ver5.1.0) allows a remote attacker to redirect a user to an arbitrary web site and conduct a phishing attack via a specially crafted URL.
5.8
2021-07-29 CVE-2020-5329 Open Redirect vulnerability in Dell EMC Avamar Server 7.3.1/7.4.1
Dell EMC Avamar Server contains an open redirect vulnerability.
network
dell CWE-601
5.8
2021-07-26 CVE-2021-3664 Open Redirect vulnerability in Url-Parse Project Url-Parse
url-parse is vulnerable to URL Redirection to Untrusted Site
network
low complexity
url-parse-project CWE-601
5.3
2021-07-22 CVE-2021-32786 Open Redirect vulnerability in multiple products
mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider.
network
low complexity
openidc fedoraproject CWE-601
6.1
2021-07-19 CVE-2021-35966 Open Redirect vulnerability in Learningdigital Orca HCM
The specific function of the Orca HCM digital learning platform does not filter input parameters properly, which causing the URL can be redirected to any website.
5.8
2021-07-16 CVE-2021-3647 Open Redirect vulnerability in Uri.Js Project Uri.Js
URI.js is vulnerable to URL Redirection to Untrusted Site
5.8
2021-07-15 CVE-2021-20534 Open Redirect vulnerability in IBM Security Verify Access 10.0.0
IBM Security Verify Access Docker 10.0.0 could allow a remote attacker to conduct phishing attacks, using an open redirect attack.
network
ibm CWE-601
4.9
2021-07-12 CVE-2021-35037 Open Redirect vulnerability in Jamf
Jamf Pro before 10.30.1 allows for an unvalidated URL redirect vulnerability affecting Jamf Pro customers who host their environments on-premises.
network
jamf CWE-601
5.8
2021-07-06 CVE-2021-24406 Open Redirect vulnerability in Gvectors Wpforo Forum
The wpForo Forum WordPress plugin before 1.9.7 did not validate the redirect_to parameter in the login form of the forum, leading to an open redirect issue after a successful login.
network
gvectors CWE-601
5.8