Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 6.5
CVE-2024-56963
An issue in Beijing Sogou Technology Development Co., Ltd Sogou Input iOS 12.2.0 allows attackers to access sensitive user information via supplying …
No fix yet
MEDIUM 6.5
CVE-2024-56964
An issue in Che Hao Duo Used Automobile Agency (Beijing) Co., Ltd Guazi Used Car iOS 10.15.1 allows attackers to access sensitive user information vi…
No fix yet
MEDIUM 6.5
CVE-2024-56965
An issue in Shanghai Shizhi Information Technology Co., Ltd Shihuo iOS 8.16.0 allows attackers to access sensitive user information via supplying a c…
No fix yet
MEDIUM 6.5
CVE-2024-56966
An issue in Shanghai Xuan Ting Entertainment Information & Technology Co., Ltd Qidian Reader iOS 5.9.384 allows attackers to access sensitive user in…
No fix yet
MEDIUM 6.5
CVE-2024-56967
An issue in Cloud Whale Interactive Technology LLC. PolyBuzz iOS 2.0.20 allows attackers to access sensitive user information via supplying a crafted…
No fix yet
MEDIUM 6.5
CVE-2024-56947
An issue in Xiamen Meitu Technology Co., Ltd. BeautyCam iOS v12.3.60 allows attackers to access sensitive user information via supplying a crafted li…
No fix yet
MEDIUM 6.5
CVE-2024-56948
An issue in KuGou Technology CO. LTD KuGou Music iOS v20.0.0 allows attackers to access sensitive user information via supplying a crafted link.
No fix yet
MEDIUM 6.5
CVE-2024-56949
An issue in Guangzhou Polar Future Culture Technology Co., Ltd University Search iOS 2.27.0 allows attackers to access sensitive user information via…
Mitigation only
MEDIUM 6.5
CVE-2024-56950
An issue in KuGou Technology Co., Ltd KuGou Concept iOS 4.0.61 allows attackers to access sensitive user information via supplying a crafted link.
No fix yet
MEDIUM 6.5
CVE-2024-56951
An issue in Hangzhou Bobo Technology Co Ltd UU Game Booster iOS 10.6.13 allows attackers to access sensitive user information via supplying a crafted…
No fix yet
MEDIUM 6.5
CVE-2024-56952
An issue in Beijing Baidu Netcom Science & Technology Co Ltd Baidu Lite app (iOS version) 6.40.0 allows attackers to access user information via supp…
No fix yet
MEDIUM 6.5
CVE-2024-56953
An issue in Baidu (China) Co Ltd Baidu Input Method (iOS version) v12.6.13 allows attackers to access user information via supplying a crafted link.
No fix yet
MEDIUM 6.5
CVE-2024-56954
An issue in Beijing Baidu Netcom Science & Technology Co Ltd Haokan Video iOS 7.70.0 allows attackers to access sensitive user information via supply…
No fix yet
MEDIUM 6.1
CVE-2025-24741
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in LOGON KB Support kb-support.This issue affects KB Support: from n/a through <= 1…
Kb Support
1.6.8+
MEDIUM 6.1
CVE-2025-0705
A vulnerability has been found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d and classified as problematic. Affected by this v…
Bootplus
after 2020-08-24
MEDIUM 6.1
CVE-2025-21512
Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Web Runtime SEC). Supported versions that are affected …
Jd Edwards Enterpriseone Tools
9.2.9.0+
MEDIUM 6.1
CVE-2025-24020
WeGIA is a Web manager for charitable institutions. An Open Redirect vulnerability was identified in the `control.php` endpoint of versions up to and…
Wegia
3.2.11+
MEDIUM 6.1
CVE-2025-23086
On most desktop platforms, Brave Browser versions 1.70.x-1.73.x included a feature to show a site's origin on the OS-provided file selector dialog wh…
Mitigation only
MEDIUM 6.1
CVE-2024-55892
TYPO3 is a free and open source Content Management Framework. Applications that use `TYPO3\CMS\Core\Http\Uri` to parse externally provided URLs (e.g.…
TYPO3
9.5.49 / 10.4.48+
MEDIUM 6.1
CVE-2024-46481
The login page of Venki Supravizio BPM up to 18.1.1 is vulnerable to open redirect leading to reflected XSS.
Supravizio Bpm
after 18.1.1
MEDIUM 5.3
CVE-2025-0244EPSS 7%
When redirecting to an invalid protocol scheme, an attacker could spoof the address bar.
*Note: This issue only affected Android operating systems. …
Firefox
134.0+
MEDIUM 6.1
CVE-2024-56734
Better Auth is an authentication library for TypeScript. An open redirect vulnerability has been identified in the verify email endpoint of all versi…
Better Auth
1.1.6+
MEDIUM 5.2
CVE-2024-45082
IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.3
could allow a remote attacker to conduct phishing attacks, using an open redir…
Cognos Analytics
after 12.0.3
MEDIUM 5.4
CVE-2024-55452
A URL redirection vulnerability exists in UJCMS 9.6.3 due to improper validation of URLs in the upload and rendering of new block / carousel items. T…
Ujcms
No fix yet
MEDIUM 6.4
CVE-2024-9387
An issue was discovered in GitLab CE/EE affecting all versions from 11.8 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. An attacker could…
GitLab
17.4.6 / 17.5.4+
HIGH 8.7
CVE-2024-11274
An issue was discovered in GitLab CE/EE affecting all versions starting from 16.1 prior to 17.4.6, starting from 17.5 prior to 17.5.4, and starting f…
GitLab
17.4.6 / 17.5.4+
MEDIUM 6.1
CVE-2024-54050
Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. An attacker coul…
Connect
11.4.9 / 12.7+
MEDIUM 6.1
CVE-2024-54051
Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. An attacker coul…
Connect
11.4.9 / 12.7+
MEDIUM 6.1
CVE-2024-52003
Traefik (pronounced traffic) is an HTTP reverse proxy and load balancer. There is a vulnerability in Traefik that allows the client to provide the X-…
Traefik
2.11.14 / 3.2.1+
MEDIUM 5.1
CVE-2024-53264
bunkerweb is an Open-source and next-generation Web Application Firewall (WAF). A open redirect vulnerability exists in the loading endpoint, allowin…
Mitigation only