Vulnerability index

Browse CVEs

1,441 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Open RedirectCWE-601 × clear
MEDIUM 6.5 CVE-2024-56963 An issue in Beijing Sogou Technology Development Co., Ltd Sogou Input iOS 12.2.0 allows attackers to access sensitive user information via supplying … No fix yet Fix from $1,6002025-01-27 MEDIUM 6.5 CVE-2024-56964 An issue in Che Hao Duo Used Automobile Agency (Beijing) Co., Ltd Guazi Used Car iOS 10.15.1 allows attackers to access sensitive user information vi… No fix yet Fix from $1,6002025-01-27 MEDIUM 6.5 CVE-2024-56965 An issue in Shanghai Shizhi Information Technology Co., Ltd Shihuo iOS 8.16.0 allows attackers to access sensitive user information via supplying a c… No fix yet Fix from $1,6002025-01-27 MEDIUM 6.5 CVE-2024-56966 An issue in Shanghai Xuan Ting Entertainment Information & Technology Co., Ltd Qidian Reader iOS 5.9.384 allows attackers to access sensitive user in… No fix yet Fix from $1,6002025-01-27 MEDIUM 6.5 CVE-2024-56967 An issue in Cloud Whale Interactive Technology LLC. PolyBuzz iOS 2.0.20 allows attackers to access sensitive user information via supplying a crafted… No fix yet Fix from $1,6002025-01-27 MEDIUM 6.5 CVE-2024-56947 An issue in Xiamen Meitu Technology Co., Ltd. BeautyCam iOS v12.3.60 allows attackers to access sensitive user information via supplying a crafted li… No fix yet Fix from $1,6002025-01-27 MEDIUM 6.5 CVE-2024-56948 An issue in KuGou Technology CO. LTD KuGou Music iOS v20.0.0 allows attackers to access sensitive user information via supplying a crafted link. No fix yet Fix from $1,6002025-01-27 MEDIUM 6.5 CVE-2024-56949 An issue in Guangzhou Polar Future Culture Technology Co., Ltd University Search iOS 2.27.0 allows attackers to access sensitive user information via… Mitigation only Fix from $1,6002025-01-27 MEDIUM 6.5 CVE-2024-56950 An issue in KuGou Technology Co., Ltd KuGou Concept iOS 4.0.61 allows attackers to access sensitive user information via supplying a crafted link. No fix yet Fix from $1,6002025-01-27 MEDIUM 6.5 CVE-2024-56951 An issue in Hangzhou Bobo Technology Co Ltd UU Game Booster iOS 10.6.13 allows attackers to access sensitive user information via supplying a crafted… No fix yet Fix from $1,6002025-01-27 MEDIUM 6.5 CVE-2024-56952 An issue in Beijing Baidu Netcom Science & Technology Co Ltd Baidu Lite app (iOS version) 6.40.0 allows attackers to access user information via supp… No fix yet Fix from $1,6002025-01-27 MEDIUM 6.5 CVE-2024-56953 An issue in Baidu (China) Co Ltd Baidu Input Method (iOS version) v12.6.13 allows attackers to access user information via supplying a crafted link. No fix yet Fix from $1,6002025-01-27 MEDIUM 6.5 CVE-2024-56954 An issue in Beijing Baidu Netcom Science & Technology Co Ltd Haokan Video iOS 7.70.0 allows attackers to access sensitive user information via supply… No fix yet Fix from $1,6002025-01-27 MEDIUM 6.1 CVE-2025-24741 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in LOGON KB Support kb-support.This issue affects KB Support: from n/a through <= 1… Kb Support 1.6.8+ Fix from $1,6002025-01-27 MEDIUM 6.1 CVE-2025-0705 A vulnerability has been found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d and classified as problematic. Affected by this v… Bootplus after 2020-08-24 Fix from $1,6002025-01-24 MEDIUM 6.1 CVE-2025-21512 Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Web Runtime SEC). Supported versions that are affected … Jd Edwards Enterpriseone Tools 9.2.9.0+ Fix from $1,6002025-01-21 MEDIUM 6.1 CVE-2025-24020 WeGIA is a Web manager for charitable institutions. An Open Redirect vulnerability was identified in the `control.php` endpoint of versions up to and… Wegia 3.2.11+ Fix from $1,6002025-01-21 MEDIUM 6.1 CVE-2025-23086 On most desktop platforms, Brave Browser versions 1.70.x-1.73.x included a feature to show a site's origin on the OS-provided file selector dialog wh… Mitigation only Fix from $1,6002025-01-21 MEDIUM 6.1 CVE-2024-55892 TYPO3 is a free and open source Content Management Framework. Applications that use `TYPO3\CMS\Core\Http\Uri` to parse externally provided URLs (e.g.… TYPO3 9.5.49 / 10.4.48+ Fix from $1,6002025-01-14 MEDIUM 6.1 CVE-2024-46481 The login page of Venki Supravizio BPM up to 18.1.1 is vulnerable to open redirect leading to reflected XSS. Supravizio Bpm after 18.1.1 Fix from $1,6002025-01-13 MEDIUM 5.3 CVE-2025-0244EPSS 7% When redirecting to an invalid protocol scheme, an attacker could spoof the address bar. *Note: This issue only affected Android operating systems. … Firefox 134.0+ Fix from $1,6002025-01-07 MEDIUM 6.1 CVE-2024-56734 Better Auth is an authentication library for TypeScript. An open redirect vulnerability has been identified in the verify email endpoint of all versi… Better Auth 1.1.6+ Fix from $1,6002024-12-30 MEDIUM 5.2 CVE-2024-45082 IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.3 could allow a remote attacker to conduct phishing attacks, using an open redir… Cognos Analytics after 12.0.3 Fix from $1,6002024-12-18 MEDIUM 5.4 CVE-2024-55452 A URL redirection vulnerability exists in UJCMS 9.6.3 due to improper validation of URLs in the upload and rendering of new block / carousel items. T… Ujcms No fix yet Fix from $1,6002024-12-16 MEDIUM 6.4 CVE-2024-9387 An issue was discovered in GitLab CE/EE affecting all versions from 11.8 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. An attacker could… GitLab 17.4.6 / 17.5.4+ Fix from $1,6002024-12-12 HIGH 8.7 CVE-2024-11274 An issue was discovered in GitLab CE/EE affecting all versions starting from 16.1 prior to 17.4.6, starting from 17.5 prior to 17.5.4, and starting f… GitLab 17.4.6 / 17.5.4+ Fix from $1,9502024-12-12 MEDIUM 6.1 CVE-2024-54050 Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. An attacker coul… Connect 11.4.9 / 12.7+ Fix from $1,6002024-12-10 MEDIUM 6.1 CVE-2024-54051 Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. An attacker coul… Connect 11.4.9 / 12.7+ Fix from $1,6002024-12-10 MEDIUM 6.1 CVE-2024-52003 Traefik (pronounced traffic) is an HTTP reverse proxy and load balancer. There is a vulnerability in Traefik that allows the client to provide the X-… Traefik 2.11.14 / 3.2.1+ Fix from $1,6002024-11-29 MEDIUM 5.1 CVE-2024-53264 bunkerweb is an Open-source and next-generation Web Application Firewall (WAF). A open redirect vulnerability exists in the loading endpoint, allowin… Mitigation only Fix from $1,6002024-11-27