Vulnerability index

Browse CVEs

1,441 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Open RedirectCWE-601 × clear
Unclassified MEDIUM 6.5
CVE-2024-56963

An issue in Beijing Sogou Technology Development Co., Ltd Sogou Input iOS 12.2.0 allows attackers to access sensitive user information via supplying …

No fix yet
Fix from $1,600 2025-01-27
Unclassified MEDIUM 6.5
CVE-2024-56964

An issue in Che Hao Duo Used Automobile Agency (Beijing) Co., Ltd Guazi Used Car iOS 10.15.1 allows attackers to access sensitive user information vi…

No fix yet
Fix from $1,600 2025-01-27
Unclassified MEDIUM 6.5
CVE-2024-56965

An issue in Shanghai Shizhi Information Technology Co., Ltd Shihuo iOS 8.16.0 allows attackers to access sensitive user information via supplying a c…

No fix yet
Fix from $1,600 2025-01-27
Unclassified MEDIUM 6.5
CVE-2024-56966

An issue in Shanghai Xuan Ting Entertainment Information & Technology Co., Ltd Qidian Reader iOS 5.9.384 allows attackers to access sensitive user in…

No fix yet
Fix from $1,600 2025-01-27
Unclassified MEDIUM 6.5
CVE-2024-56967

An issue in Cloud Whale Interactive Technology LLC. PolyBuzz iOS 2.0.20 allows attackers to access sensitive user information via supplying a crafted…

No fix yet
Fix from $1,600 2025-01-27
Unclassified MEDIUM 6.5
CVE-2024-56947

An issue in Xiamen Meitu Technology Co., Ltd. BeautyCam iOS v12.3.60 allows attackers to access sensitive user information via supplying a crafted li…

No fix yet
Fix from $1,600 2025-01-27
Unclassified MEDIUM 6.5
CVE-2024-56948

An issue in KuGou Technology CO. LTD KuGou Music iOS v20.0.0 allows attackers to access sensitive user information via supplying a crafted link.

No fix yet
Fix from $1,600 2025-01-27
Unclassified MEDIUM 6.5
CVE-2024-56949

An issue in Guangzhou Polar Future Culture Technology Co., Ltd University Search iOS 2.27.0 allows attackers to access sensitive user information via…

Mitigation only
Fix from $1,600 2025-01-27
Unclassified MEDIUM 6.5
CVE-2024-56950

An issue in KuGou Technology Co., Ltd KuGou Concept iOS 4.0.61 allows attackers to access sensitive user information via supplying a crafted link.

No fix yet
Fix from $1,600 2025-01-27
Unclassified MEDIUM 6.5
CVE-2024-56951

An issue in Hangzhou Bobo Technology Co Ltd UU Game Booster iOS 10.6.13 allows attackers to access sensitive user information via supplying a crafted…

No fix yet
Fix from $1,600 2025-01-27
Unclassified MEDIUM 6.5
CVE-2024-56952

An issue in Beijing Baidu Netcom Science & Technology Co Ltd Baidu Lite app (iOS version) 6.40.0 allows attackers to access user information via supp…

No fix yet
Fix from $1,600 2025-01-27
Unclassified MEDIUM 6.5
CVE-2024-56953

An issue in Baidu (China) Co Ltd Baidu Input Method (iOS version) v12.6.13 allows attackers to access user information via supplying a crafted link.

No fix yet
Fix from $1,600 2025-01-27
Unclassified MEDIUM 6.5
CVE-2024-56954

An issue in Beijing Baidu Netcom Science & Technology Co Ltd Haokan Video iOS 7.70.0 allows attackers to access sensitive user information via supply…

No fix yet
Fix from $1,600 2025-01-27
Kb Support MEDIUM 6.1
CVE-2025-24741

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in LOGON KB Support kb-support.This issue affects KB Support: from n/a through <= 1…

Fix: 1.6.8+
Fix from $1,600 2025-01-27
Bootplus MEDIUM 6.1
CVE-2025-0705

A vulnerability has been found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d and classified as problematic. Affected by this v…

Fix: after 2020-08-24
Fix from $1,600 2025-01-24
Jd Edwards Enterpriseone Tools MEDIUM 6.1
CVE-2025-21512

Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Web Runtime SEC). Supported versions that are affected …

Fix: 9.2.9.0+
Fix from $1,600 2025-01-21
Wegia MEDIUM 6.1
CVE-2025-24020

WeGIA is a Web manager for charitable institutions. An Open Redirect vulnerability was identified in the `control.php` endpoint of versions up to and…

Fix: 3.2.11+
Fix from $1,600 2025-01-21
Unclassified MEDIUM 6.1
CVE-2025-23086

On most desktop platforms, Brave Browser versions 1.70.x-1.73.x included a feature to show a site's origin on the OS-provided file selector dialog wh…

Mitigation only
Fix from $1,600 2025-01-21
TYPO3 MEDIUM 6.1
CVE-2024-55892

TYPO3 is a free and open source Content Management Framework. Applications that use `TYPO3\CMS\Core\Http\Uri` to parse externally provided URLs (e.g.…

Fix: 9.5.49 / 10.4.48+
Fix from $1,600 2025-01-14
Supravizio Bpm MEDIUM 6.1
CVE-2024-46481

The login page of Venki Supravizio BPM up to 18.1.1 is vulnerable to open redirect leading to reflected XSS.

Fix: after 18.1.1
Fix from $1,600 2025-01-13
Firefox MEDIUM 5.3
CVE-2025-0244EPSS 7%

When redirecting to an invalid protocol scheme, an attacker could spoof the address bar. *Note: This issue only affected Android operating systems. …

Fix: 134.0+
Fix from $1,600 2025-01-07
Better Auth MEDIUM 6.1
CVE-2024-56734

Better Auth is an authentication library for TypeScript. An open redirect vulnerability has been identified in the verify email endpoint of all versi…

Fix: 1.1.6+
Fix from $1,600 2024-12-30
Cognos Analytics MEDIUM 5.2
CVE-2024-45082

IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.3 could allow a remote attacker to conduct phishing attacks, using an open redir…

Fix: after 12.0.3
Fix from $1,600 2024-12-18
Ujcms MEDIUM 5.4
CVE-2024-55452

A URL redirection vulnerability exists in UJCMS 9.6.3 due to improper validation of URLs in the upload and rendering of new block / carousel items. T…

No fix yet
Fix from $1,600 2024-12-16
GitLab MEDIUM 6.4
CVE-2024-9387

An issue was discovered in GitLab CE/EE affecting all versions from 11.8 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. An attacker could…

Fix: 17.4.6 / 17.5.4+
Fix from $1,600 2024-12-12
GitLab HIGH 8.7
CVE-2024-11274

An issue was discovered in GitLab CE/EE affecting all versions starting from 16.1 prior to 17.4.6, starting from 17.5 prior to 17.5.4, and starting f…

Fix: 17.4.6 / 17.5.4+
Fix from $1,950 2024-12-12
Connect MEDIUM 6.1
CVE-2024-54050

Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. An attacker coul…

Fix: 11.4.9 / 12.7+
Fix from $1,600 2024-12-10
Connect MEDIUM 6.1
CVE-2024-54051

Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. An attacker coul…

Fix: 11.4.9 / 12.7+
Fix from $1,600 2024-12-10
Traefik MEDIUM 6.1
CVE-2024-52003

Traefik (pronounced traffic) is an HTTP reverse proxy and load balancer. There is a vulnerability in Traefik that allows the client to provide the X-…

Fix: 2.11.14 / 3.2.1+
Fix from $1,600 2024-11-29
Unclassified MEDIUM 5.1
CVE-2024-53264

bunkerweb is an Open-source and next-generation Web Application Firewall (WAF). A open redirect vulnerability exists in the loading endpoint, allowin…

Mitigation only
Fix from $1,600 2024-11-27