Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')

DATE CVE VULNERABILITY TITLE RISK
2024-06-14 CVE-2024-23442 Open Redirect vulnerability in Elastic Kibana
An open redirect issue was discovered in Kibana that could lead to a user being redirected to an arbitrary website if they use a maliciously crafted Kibana URL.
network
low complexity
elastic CWE-601
6.1
2024-06-13 CVE-2024-3032 Open Redirect vulnerability in Themify Builder
Themify Builder WordPress plugin before 7.5.8 does not validate a parameter before redirecting the user to its value, leading to an Open Redirect issue
network
low complexity
themify CWE-601
6.1
2024-06-10 CVE-2024-22244 Open Redirect vulnerability in Linuxfoundation Harbor
Open Redirect in Harbor  <=v2.8.4, <=v2.9.2, and <=v2.10.0 may redirect a user to a malicious site.
network
low complexity
linuxfoundation CWE-601
6.1
2024-06-10 CVE-2024-36419 Open Redirect vulnerability in Salesagility Suitecrm
SuiteCRM is an open-source Customer Relationship Management (CRM) software application.
network
low complexity
salesagility CWE-601
6.1
2024-05-21 CVE-2024-34071 Open Redirect vulnerability in Umbraco CMS
Umbraco is an ASP.NET CMS used by more than 730.000 websites.
network
low complexity
umbraco CWE-601
6.1
2024-05-15 CVE-2024-20369 Open Redirect vulnerability in Cisco Network Services Orchestrator
A vulnerability in the web-based management interface of Cisco Crosswork Network Services Orchestrator (NSO) could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. This vulnerability is due to improper input validation of a parameter in an HTTP request.
network
low complexity
cisco CWE-601
6.1
2024-04-25 CVE-2022-36028 Open Redirect vulnerability in Bigbluebutton Greenlight
Greenlight is an end-user interface for BigBlueButton servers.
network
low complexity
bigbluebutton CWE-601
6.1
2024-04-25 CVE-2022-36029 Open Redirect vulnerability in Bigbluebutton Greenlight
Greenlight is an end-user interface for BigBlueButton servers.
network
low complexity
bigbluebutton CWE-601
6.1
2024-04-05 CVE-2024-31213 Open Redirect vulnerability in Instantcms
InstantCMS is a free and open source content management system.
network
low complexity
instantcms CWE-601
5.4
2024-03-28 CVE-2024-31135 Open Redirect vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2024.03 open redirect was possible on the login page
network
low complexity
jetbrains CWE-601
6.1