Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-01-22 | CVE-2024-22113 | Open Redirect vulnerability in Anglers-Net CGI An-Anlyzer 20190624/20231231 Open redirect vulnerability in Access analysis CGI An-Analyzer released in 2023 December 31 and earlier allows a remote unauthenticated attacker to redirect users to arbitrary websites and conduct phishing attacks via a specially crafted URL. | 6.1 |
2024-01-16 | CVE-2023-3771 | Open Redirect vulnerability in T1 Project T1 The T1 WordPress theme through 19.0 is vulnerable to unauthenticated open redirect with which any attacker and redirect users to arbitrary websites. | 6.1 |
2024-01-10 | CVE-2023-49394 | Open Redirect vulnerability in Easycorp Zentao Zentao versions 4.1.3 and before has a URL redirect vulnerability, which prevents the system from functioning properly. | 6.1 |
2024-01-08 | CVE-2023-6552 | Open Redirect vulnerability in Tasmoadmin Lack of "current" GET parameter validation during the action of changing a language leads to an open redirect vulnerability. | 6.1 |
2024-01-03 | CVE-2023-50345 | Open Redirect vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1 HCL DRYiCE MyXalytics is impacted by an Open Redirect vulnerability which could allow an attacker to redirect users to malicious sites, potentially leading to phishing attacks or other security threats. | 6.1 |
2024-01-02 | CVE-2023-26159 | Open Redirect vulnerability in Follow-Redirects Follow Redirects Versions of the package follow-redirects before 1.15.4 are vulnerable to Improper Input Validation due to the improper handling of URLs by the url.parse() function. | 6.1 |
2023-12-30 | CVE-2023-52263 | Open Redirect vulnerability in Brave Browser Brave Browser before 1.59.40 does not properly restrict the schema for WebUI factory and redirect. | 6.1 |
2023-12-29 | CVE-2023-31229 | Open Redirect vulnerability in Wpdirectorykit WP Directory KIT URL Redirection to Untrusted Site ('Open Redirect') vulnerability in WP Directory Kit.This issue affects WP Directory Kit: from n/a through 1.1.9. | 6.1 |
2023-12-26 | CVE-2023-48003 | Open Redirect vulnerability in Aspnetzero Asp.Net Zero An open redirect through HTML injection in user messages in Asp.Net Zero before 12.3.0 allows remote attackers to redirect targeted victims to any URL via the '<meta http-equiv="refresh"' in the WebSocket messages. | 6.1 |
2023-12-26 | CVE-2023-49438 | Open Redirect vulnerability in Flask-Security-Too Project Flask-Security-Too An open redirect vulnerability in the python package Flask-Security-Too <=5.3.2 allows attackers to redirect unsuspecting users to malicious sites via a crafted URL by abusing the ?next parameter on the /login and /register routes. | 6.1 |