Vulnerability index

Browse CVEs

1,444 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Open RedirectCWE-601 × clear
Uc 500e Firmware MEDIUM 6.1
CVE-2023-50704

An attacker could construct a URL within the application that causes a redirection to an arbitrary external domain and could be leveraged to facilita…

Mitigation only
Fix from $1,600 2023-12-20
Parcel Pro MEDIUM 6.1
CVE-2023-46624

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Parcel Pro.This issue affects Parcel Pro: from n/a through 1.6.11.

Fix: after 1.6.11
Fix from $1,600 2023-12-19
Core Web Vitals \& Pagespeed Booster MEDIUM 6.1
CVE-2023-35883

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Magazine3 Core Web Vitals & PageSpeed Booster.This issue affects Core Web Vitals…

Fix: after 1.0.12
Fix from $1,600 2023-12-19
Integration For Salesforce And Contact Form 7\, Wpforms\, Elementor\, Ninja Forms MEDIUM 6.1
CVE-2023-37982

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for Salesforce and Contact Form 7, WPForms, Elementor, Nin…

Fix: after 1.3.3
Fix from $1,600 2023-12-19
Login And Logout Redirect MEDIUM 6.1
CVE-2023-41648

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Swapnil V. Patil Login and Logout Redirect.This issue affects Login and Logout R…

Fix: after 2.0.3
Fix from $1,600 2023-12-19
Affiliate Toolkit MEDIUM 6.1
CVE-2023-45105

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in SERVIT Software Solutions affiliate-toolkit – WordPress Affiliate Plugin.This is…

Fix: after 3.3.9
Fix from $1,600 2023-12-19
Integration For Woocommerce And Quickbooks MEDIUM 6.1
CVE-2023-38478

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for WooCommerce and QuickBooks.This issue affects Integrat…

Fix: after 1.2.3
Fix from $1,600 2023-12-19
Integration For Woocommerce And Zoho Crm\, Books\, Invoice\, Inventory\, Bigin MEDIUM 6.1
CVE-2023-38481

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for WooCommerce and Zoho CRM, Books, Invoice, Inventory, B…

Fix: 1.3.7+
Fix from $1,600 2023-12-19
Doofinder MEDIUM 6.1
CVE-2023-40602

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Doofinder Doofinder WP & WooCommerce Search.This issue affects Doofinder WP & Wo…

Fix: after 1.5.49
Fix from $1,600 2023-12-19
Keycloak MEDIUM 6.1
CVE-2023-6927

A flaw was found in Keycloak. This issue may allow an attacker to steal authorization codes or tokens from clients using a wildcard in the JARM respo…

Mitigation only
Fix from $1,600 2023-12-18
Gps Tracker MEDIUM 6.1
CVE-2020-17484

An Open Redirection vulnerability exists in Uffizio's GPS Tracker all versions allows an attacker to construct a URL within the application that caus…

Mitigation only
Fix from $1,600 2023-12-16
Shiro MEDIUM 6.1
CVE-2023-46750

URL Redirection to Untrusted Site ('Open Redirect') vulnerability when "form" authentication is used in Apache Shiro. Mitigation: Update to Apache Sh…

Fix: 1.13.0+
Fix from $1,600 2023-12-14
Eb450 Firmware MEDIUM 6.1
CVE-2023-5629

A CWE-601:URL Redirection to Untrusted Site (‘Open Redirect’) vulnerability exists that could cause disclosure of information through phishing attemp…

No fix yet
Fix from $1,600 2023-12-14
Openid Connect Authentication MEDIUM 6.1
CVE-2023-50771

Jenkins OpenId Connect Authentication Plugin 2.6 and earlier improperly determines that a redirect URL after login is legitimately pointing to Jenkin…

Fix: after 2.6
Fix from $1,600 2023-12-13
Opencms MEDIUM 6.1
CVE-2023-6380

Open redirect vulnerability has been found in the Open CMS product affecting versions 14 and 15 of the 'Mercury' template. An attacker could create a…

Fix: 16.0.0+
Fix from $1,600 2023-12-13
Zammad MEDIUM 5.3
CVE-2023-50456

An issue was discovered in Zammad before 6.2.0. An attacker can trigger phishing links in generated notification emails via a crafted first or last n…

Mitigation only
Fix from $1,600 2023-12-10
Seafile MEDIUM 6.1
CVE-2023-28874

The next parameter in the /accounts/login endpoint of Seafile 9.0.6 allows attackers to redirect users to arbitrary sites.

No fix yet
Fix from $1,600 2023-12-09
System Sentinel Anyware MEDIUM 6.1
CVE-2023-48928

Franklin Fueling Systems System Sentinel AnyWare (SSA) version 1.6.24.492 is vulnerable to Open Redirect. The 'path' parameter of the prefs.asp resou…

No fix yet
Fix from $1,600 2023-12-08
Responsive Column Widgets MEDIUM 6.1
CVE-2023-45762

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Michael Uno (miunosoft) Responsive Column Widgets.This issue affects Responsive …

Fix: after 1.2.7
Fix from $1,600 2023-12-07
Integrate Google Drive MEDIUM 6.1
CVE-2023-47548

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in SoftLab Integrate Google Drive – Browse, Upload, Download, Embed, Play, Share, G…

Fix: 1.3.3+
Fix from $1,600 2023-12-07
Landing Page Builder MEDIUM 6.1
CVE-2023-48325

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in PluginOps Landing Page Builder – Lead Page – Optin Page – Squeeze Page – WordPre…

Fix: 1.5.1.6+
Fix from $1,600 2023-12-07
Integration For Constant Contact And Contact Form 7\, Wpforms\, Elementor\, Ninja MEDIUM 6.1
CVE-2023-47779

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks. Integration for Constant Contact and Contact Form 7, WPForms, Element…

Fix: 1.1.5+
Fix from $1,600 2023-12-07
Pleasanter MEDIUM 6.1
CVE-2023-46688

Open redirect vulnerability in Pleasanter 1.3.47.0 and earlier allows a remote unauthenticated attacker to redirect users to arbitrary web sites via …

Fix: after 1.3.47.0
Fix from $1,600 2023-12-06
Emui HIGH 7.5
CVE-2023-49240

Unauthorized access vulnerability in the launcher module. Successful exploitation of this vulnerability may affect service confidentiality.

No fix yet
Fix from $1,950 2023-12-06
Kkfileview MEDIUM 6.1
CVE-2023-48815

kkFileView v4.3.0 is vulnerable to Incorrect Access Control.

No fix yet
Fix from $1,600 2023-12-04
Calendarinho MEDIUM 6.1
CVE-2023-49281

Calendarinho is an open source calendaring application to manage large teams of consultants. An Open Redirect issue occurs when a web application red…

Fix: 2023-10-11+
Fix from $1,600 2023-12-01
Superset MEDIUM 5.4
CVE-2023-42502

An authenticated attacker with update datasets permission could change a dataset link to an untrusted site by spoofing the HTTP Host header, users co…

Fix: 3.0.0+
Fix from $1,600 2023-11-28
Mattermost MEDIUM 6.1
CVE-2023-47168

Mattermost fails to properly check a redirect URL parameter allowing for an open redirect was possible when the user clicked "Back to Mattermost" aft…

Fix: after 9.0.1
Fix from $1,600 2023-11-27
Oauth2 MEDIUM 6.1
CVE-2023-49104

An issue was discovered in ownCloud owncloud/oauth2 before 0.6.1, when Allow Subdomains is enabled. An attacker is able to pass in a crafted redirect…

Fix: 0.6.1+
Fix from $1,600 2023-11-21
Firefox Mobile MEDIUM 6.1
CVE-2023-49061

An attacker could have performed HTML template injection via Reader Mode and exfiltrated user information. This vulnerability affects Firefox for iOS…

Fix: 120.0+
Fix from $1,600 2023-11-21