Vulnerabilities > Redirection

DATE CVE VULNERABILITY TITLE RISK
2019-08-28 CVE-2012-6717 Cross-site Scripting vulnerability in Redirection
The redirection plugin before 2.2.12 for WordPress has XSS, a different issue than CVE-2011-4562.
4.3
2019-08-28 CVE-2011-5329 Cross-site Scripting vulnerability in Redirection
The redirection plugin before 2.2.9 for WordPress has XSS in the admin menu, a different issue than CVE-2011-4562.
4.3
2018-06-26 CVE-2018-1000509 Deserialization of Untrusted Data vulnerability in Redirection 2.7.1
Redirection version 2.7.1 contains a Serialisation vulnerability possibly allowing ACE vulnerability in Settings page AJAX that can result in could allow admin to execute arbitrary code in some circumstances.
network
low complexity
redirection CWE-502
6.5
2018-06-26 CVE-2018-1000504 Open Redirect vulnerability in Redirection 2.7.3
Redirection version 2.7.3 contains a ACE via file inclusion vulnerability in Pass-through mode that can result in allows admins to execute any PHP file in the filesystem.
network
low complexity
redirection CWE-601
critical
9.0