Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')

DATE CVE VULNERABILITY TITLE RISK
2024-01-22 CVE-2024-22113 Open Redirect vulnerability in Anglers-Net CGI An-Anlyzer 20190624/20231231
Open redirect vulnerability in Access analysis CGI An-Analyzer released in 2023 December 31 and earlier allows a remote unauthenticated attacker to redirect users to arbitrary websites and conduct phishing attacks via a specially crafted URL.
network
low complexity
anglers-net CWE-601
6.1
2024-01-16 CVE-2023-3771 Open Redirect vulnerability in T1 Project T1
The T1 WordPress theme through 19.0 is vulnerable to unauthenticated open redirect with which any attacker and redirect users to arbitrary websites.
network
low complexity
t1-project CWE-601
6.1
2024-01-10 CVE-2023-49394 Open Redirect vulnerability in Easycorp Zentao
Zentao versions 4.1.3 and before has a URL redirect vulnerability, which prevents the system from functioning properly.
network
low complexity
easycorp CWE-601
6.1
2024-01-08 CVE-2023-6552 Open Redirect vulnerability in Tasmoadmin
Lack of "current" GET parameter validation during the action of changing a language leads to an open redirect vulnerability.
network
low complexity
tasmoadmin CWE-601
6.1
2024-01-03 CVE-2023-50345 Open Redirect vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by an Open Redirect vulnerability which could allow an attacker to redirect users to malicious sites, potentially leading to phishing attacks or other security threats.
network
low complexity
hcltech CWE-601
6.1
2024-01-02 CVE-2023-26159 Open Redirect vulnerability in Follow-Redirects Follow Redirects
Versions of the package follow-redirects before 1.15.4 are vulnerable to Improper Input Validation due to the improper handling of URLs by the url.parse() function.
network
low complexity
follow-redirects CWE-601
6.1
2023-12-30 CVE-2023-52263 Open Redirect vulnerability in Brave Browser
Brave Browser before 1.59.40 does not properly restrict the schema for WebUI factory and redirect.
network
low complexity
brave CWE-601
6.1
2023-12-29 CVE-2023-31229 Open Redirect vulnerability in Wpdirectorykit WP Directory KIT
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in WP Directory Kit.This issue affects WP Directory Kit: from n/a through 1.1.9.
network
low complexity
wpdirectorykit CWE-601
6.1
2023-12-26 CVE-2023-48003 Open Redirect vulnerability in Aspnetzero Asp.Net Zero
An open redirect through HTML injection in user messages in Asp.Net Zero before 12.3.0 allows remote attackers to redirect targeted victims to any URL via the '<meta http-equiv="refresh"' in the WebSocket messages.
network
low complexity
aspnetzero CWE-601
6.1
2023-12-26 CVE-2023-49438 Open Redirect vulnerability in Flask-Security-Too Project Flask-Security-Too
An open redirect vulnerability in the python package Flask-Security-Too <=5.3.2 allows attackers to redirect unsuspecting users to malicious sites via a crafted URL by abusing the ?next parameter on the /login and /register routes.
network
low complexity
flask-security-too-project CWE-601
6.1