Vulnerability index

Browse CVEs

1,444 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Open RedirectCWE-601 × clear
Ninja Popups MEDIUM 6.1
CVE-2022-27861

Unauth. Open Redirect vulnerability in Arscode Ninja Popups plugin <= 4.7.5 versions.

Fix: after 4.7.5
Fix from $1,600 2023-08-10
Opnsense MEDIUM 6.1
CVE-2023-38998

An open redirect in the Login page of OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 allows attackers to redirect a victim…

Fix: 23.7+
Fix from $1,600 2023-08-09
Cms MEDIUM 6.1
CVE-2023-34916

Fuge CMS v1.0 contains an Open Redirect vulnerability via /front/ProcessAct.java.

No fix yet
Fix from $1,600 2023-07-31
Cms MEDIUM 6.1
CVE-2023-34917

Fuge CMS v1.0 contains an Open Redirect vulnerability in member/RegisterAct.java.

No fix yet
Fix from $1,600 2023-07-31
Intella Connect MEDIUM 6.1
CVE-2023-35791

Vound Intella Connect 2.6.0.3 has an Open Redirect vulnerability.

No fix yet
Fix from $1,600 2023-07-31
Icewarp Server MEDIUM 6.1
CVE-2021-36580

Open Redirect vulnerability exists in IceWarp MailServer IceWarp Server Deep Castle 2 Update 1 (13.0.1.2) via the referer parameter.

Fix: 13.0.1.2+
Fix from $1,600 2023-07-27
Netdisco MEDIUM 6.1
CVE-2023-37624

Netdisco before v2.063000 was discovered to contain an open redirect vulnerability. An attacker may exploit this vulnerability to redirect users to a…

Fix: 2.063000+
Fix from $1,600 2023-07-26
Seeddms MEDIUM 6.1
CVE-2021-39425

SeedDMS v6.0.15 was discovered to contain an open redirect vulnerability. An attacker may exploit this vulnerability to redirect users to arbitrary w…

Mitigation only
Fix from $1,600 2023-07-20
Security Verify Access MEDIUM 5.4
CVE-2023-30433

IBM Security Verify Access 10.0 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to v…

Mitigation only
Fix from $1,600 2023-07-19
Bigfix Webui MEDIUM 6.1
CVE-2023-28020

 URL redirection in Login page in HCL BigFix WebUI allows malicious user to redirect the client browser to an external site via redirect URL response…

Mitigation only
Fix from $1,600 2023-07-18
Articart MEDIUM 6.1
CVE-2023-3684

A vulnerability was found in LivelyWorks Articart 2.0.1 and classified as problematic. Affected by this issue is some unknown functionality of the fi…

Mitigation only
Fix from $1,600 2023-07-16
Wrh 300wh H Firmware MEDIUM 6.1
CVE-2023-37561

Open redirect vulnerability in ELECOM wireless LAN routers and ELECOM wireless LAN repeaters allows a remote unauthenticated attacker to redirect use…

Fix: after 2.12
Fix from $1,600 2023-07-13
Openshift Login MEDIUM 6.1
CVE-2023-37947

Jenkins OpenShift Login Plugin 1.1.0.227.v27e08dfb_1a_20 and earlier improperly determines that a redirect URL after login is legitimately pointing t…

Fix: 1.1.0.230.v5d7030b_f5432+
Fix from $1,600 2023-07-12
Fedora HIGH 8.2
CVE-2023-35934

yt-dlp is a command-line program to download videos from video sites. During file downloads, yt-dlp or the external downloaders that yt-dlp employs m…

Fix: 2023.07.06 / 2023.07.06.185519+
Fix from $1,950 2023-07-06
Novu MEDIUM 6.1
CVE-2023-35948

Novu provides an API for sending notifications through multiple channels. Versions prior to 0.16.0 contain an open redirect vulnerability in the "Sig…

Fix: 0.16+
Fix from $1,600 2023-07-06
Protect Wp Admin MEDIUM 6.1
CVE-2023-3139

The Protect WP Admin WordPress plugin before 4.0 discloses the URL of the admin panel via a redirection of a crafted URL, bypassing the protection of…

Fix: 4.0+
Fix from $1,600 2023-07-04
Browser MEDIUM 6.1
CVE-2023-28364

An Open Redirect vulnerability exists prior to version 1.52.117, where the built-in QR scanner in Brave Browser Android navigated to scanned URLs aut…

Fix: 1.52.117+
Fix from $1,600 2023-07-01
Nextcloud Server MEDIUM 6.1
CVE-2023-35171

NextCloud Server and NextCloud Enterprise Server provide file storage for Nextcloud, a self-hosted productivity platform. Starting in version 26.0.0 …

Fix: 26.0.2+
Fix from $1,600 2023-06-23
Client Connector MEDIUM 6.1
CVE-2023-28799

A URL parameter during login flow was vulnerable to injection. An attacker could insert a malicious domain in this parameter, which would redirect th…

Fix: 1.4 / 1.9.3+
Fix from $1,600 2023-06-22
Blogengine.net MEDIUM 6.1
CVE-2023-33405EPSS 31%

Blogengine.net 3.3.8.0 and earlier is vulnerable to Open Redirect.

Fix: after 3.3.8.0
Fix from $1,600 2023-06-21
Firefox MEDIUM 6.1
CVE-2023-34415

When choosing a site-isolated process for a document loaded from a data: URL that was the result of a redirect, Firefox would load that document in t…

Fix: 114.0+
Fix from $1,600 2023-06-19
Collaboration MEDIUM 6.1
CVE-2023-24030

An open redirect vulnerability exists in the /preauth Servlet in Zimbra Collaboration Suite through 9.0 and 8.8.15. To exploit the vulnerability, an …

Mitigation only
Fix from $1,600 2023-06-15
Experience Manager MEDIUM 5.4
CVE-2023-29307

Adobe Experience Manager versions 6.5.16.0 (and earlier) is affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. A low-pr…

Fix: 6.5.17.0 / 2023.4+
Fix from $1,600 2023-06-15
Dxp MEDIUM 6.1
CVE-2023-35029

Open redirect vulnerability in the Layout module's SEO configuration in Liferay Portal 7.4.3.70 through 7.4.3.76, and Liferay DXP 7.4 update 70 throu…

Fix: 7.4.3.77+
Fix from $1,600 2023-06-15
Ultimate Gdpr \& Ccpa Compliance Toolkit MEDIUM 6.1
CVE-2021-4348

The Ultimate GDPR & CCPA plugin for WordPress is vulnerable to unauthenticated settings import and export via the export_settings & import_settings f…

Fix: 2.5+
Fix from $1,600 2023-06-07
Landscape MEDIUM 6.1
CVE-2023-32551

Landscape allowed URLs which caused open redirection.

Fix: 19.10.5+
Fix from $1,600 2023-06-06
Sidebar Manager To Woosidebars Converter MEDIUM 6.1
CVE-2015-10115

A vulnerability, which was classified as problematic, was found in WooSidebars Sidebar Manager Converter Plugin up to 1.1.1 on WordPress. This affect…

Fix: after 1.1.1
Fix from $1,600 2023-06-05
Wooframework Tweaks MEDIUM 6.1
CVE-2015-10113

A vulnerability classified as problematic was found in WooFramework Tweaks Plugin up to 1.0.1 on WordPress. Affected by this vulnerability is the fun…

Fix: 1.0.2+
Fix from $1,600 2023-06-05
Woosidebars MEDIUM 6.1
CVE-2015-10114

A vulnerability, which was classified as problematic, has been found in WooSidebars Plugin up to 1.4.1 on WordPress. Affected by this issue is the fu…

Fix: 1.4.2+
Fix from $1,600 2023-06-05
Frontend Post Wordpress Plugin MEDIUM 5.4
CVE-2022-4946

The Frontend Post WordPress Plugin WordPress plugin through 2.8.4 does not validate an attribute of one of its shortcode, which could allow users wit…

Fix: after 2.8.4
Fix from $1,600 2023-06-05