Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-06-19 | CVE-2017-18891 | Open Redirect vulnerability in Mattermost Server An issue was discovered in Mattermost Server before 4.2.0, 4.1.1, and 4.0.5. | 6.1 |
2020-06-19 | CVE-2020-14454 | Open Redirect vulnerability in Mattermost Desktop An issue was discovered in Mattermost Desktop App before 4.4.0. | 6.1 |
2020-06-18 | CVE-2020-14446 | Open Redirect vulnerability in Wso2 Identity Server and Identity Server AS KEY Manager An issue was discovered in WSO2 Identity Server through 5.10.0 and WSO2 IS as Key Manager through 5.10.0. | 6.1 |
2020-06-18 | CVE-2020-3337 | Open Redirect vulnerability in Cisco Umbrella A vulnerability in the web server of Cisco Umbrella could allow an unauthenticated, remote attacker to redirect a user to an undesired web page. | 6.1 |
2020-06-12 | CVE-2020-4048 | Open Redirect vulnerability in multiple products In affected versions of WordPress, due to an issue in wp_validate_redirect() and URL sanitization, an arbitrary external link can be crafted leading to unintended/open redirect when clicked. | 5.7 |
2020-06-10 | CVE-2020-6266 | Open Redirect vulnerability in SAP Fiori SAP Fiori for SAP S/4HANA, versions - 100, 200, 300, 400, allows an attacker to redirect users to a malicious site due to insufficient URL validation, leading to URL Redirection. | 5.4 |
2020-06-09 | CVE-2020-1323 | Open Redirect vulnerability in Microsoft Sharepoint Enterprise Server and Sharepoint Server An open redirect vulnerability exists in Microsoft SharePoint that could lead to spoofing.To exploit the vulnerability, an attacker could send a link that has a specially crafted URL and convince the user to click the link, aka 'SharePoint Open Redirect Vulnerability'. | 6.1 |
2020-06-09 | CVE-2020-1220 | Open Redirect vulnerability in Microsoft Edge A spoofing vulnerability exists when theMicrosoft Edge (Chromium-based) in IE Mode improperly handles specific redirects, aka 'Microsoft Edge (Chromium-based) in IE Mode Spoofing Vulnerability'. | 6.1 |
2020-06-02 | CVE-2020-10959 | Open Redirect vulnerability in Mediawiki resources/src/mediawiki.page.ready/ready.js in MediaWiki before 1.35 allows remote attackers to force a logout and external redirection via HTML content in a MediaWiki page. | 6.1 |
2020-05-25 | CVE-2020-13486 | Open Redirect vulnerability in Verbb Knock The Knock Knock plugin before 1.2.8 for Craft CMS allows malicious redirection. | 6.1 |