Vulnerability index

Browse CVEs

1,444 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Open RedirectCWE-601 × clear
MEDIUM 6.1 CVE-2023-50704 An attacker could construct a URL within the application that causes a redirection to an arbitrary external domain and could be leveraged to facilita… Uc 500e Firmware Mitigation only Fix from $1,6002023-12-20 MEDIUM 6.1 CVE-2023-46624 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Parcel Pro.This issue affects Parcel Pro: from n/a through 1.6.11. Parcel Pro after 1.6.11 Fix from $1,6002023-12-19 MEDIUM 6.1 CVE-2023-35883 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Magazine3 Core Web Vitals & PageSpeed Booster.This issue affects Core Web Vitals… Core Web Vitals \& Pagespeed Booster after 1.0.12 Fix from $1,6002023-12-19 MEDIUM 6.1 CVE-2023-37982 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for Salesforce and Contact Form 7, WPForms, Elementor, Nin… Integration For Salesforce And Contact Form 7\, Wpforms\, Elementor\, Ninja Forms after 1.3.3 Fix from $1,6002023-12-19 MEDIUM 6.1 CVE-2023-41648 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Swapnil V. Patil Login and Logout Redirect.This issue affects Login and Logout R… Login And Logout Redirect after 2.0.3 Fix from $1,6002023-12-19 MEDIUM 6.1 CVE-2023-45105 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in SERVIT Software Solutions affiliate-toolkit – WordPress Affiliate Plugin.This is… Affiliate Toolkit after 3.3.9 Fix from $1,6002023-12-19 MEDIUM 6.1 CVE-2023-38478 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for WooCommerce and QuickBooks.This issue affects Integrat… Integration For Woocommerce And Quickbooks after 1.2.3 Fix from $1,6002023-12-19 MEDIUM 6.1 CVE-2023-38481 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for WooCommerce and Zoho CRM, Books, Invoice, Inventory, B… Integration For Woocommerce And Zoho Crm\, Books\, Invoice\, Inventory\, Bigin 1.3.7+ Fix from $1,6002023-12-19 MEDIUM 6.1 CVE-2023-40602 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Doofinder Doofinder WP & WooCommerce Search.This issue affects Doofinder WP & Wo… Doofinder after 1.5.49 Fix from $1,6002023-12-19 MEDIUM 6.1 CVE-2023-6927 A flaw was found in Keycloak. This issue may allow an attacker to steal authorization codes or tokens from clients using a wildcard in the JARM respo… Keycloak Mitigation only Fix from $1,6002023-12-18 MEDIUM 6.1 CVE-2020-17484 An Open Redirection vulnerability exists in Uffizio's GPS Tracker all versions allows an attacker to construct a URL within the application that caus… Gps Tracker Mitigation only Fix from $1,6002023-12-16 MEDIUM 6.1 CVE-2023-46750 URL Redirection to Untrusted Site ('Open Redirect') vulnerability when "form" authentication is used in Apache Shiro. Mitigation: Update to Apache Sh… Shiro 1.13.0+ Fix from $1,6002023-12-14 MEDIUM 6.1 CVE-2023-5629 A CWE-601:URL Redirection to Untrusted Site (‘Open Redirect’) vulnerability exists that could cause disclosure of information through phishing attemp… Eb450 Firmware No fix yet Fix from $1,6002023-12-14 MEDIUM 6.1 CVE-2023-50771 Jenkins OpenId Connect Authentication Plugin 2.6 and earlier improperly determines that a redirect URL after login is legitimately pointing to Jenkin… Openid Connect Authentication after 2.6 Fix from $1,6002023-12-13 MEDIUM 6.1 CVE-2023-6380 Open redirect vulnerability has been found in the Open CMS product affecting versions 14 and 15 of the 'Mercury' template. An attacker could create a… Opencms 16.0.0+ Fix from $1,6002023-12-13 MEDIUM 5.3 CVE-2023-50456 An issue was discovered in Zammad before 6.2.0. An attacker can trigger phishing links in generated notification emails via a crafted first or last n… Zammad Mitigation only Fix from $1,6002023-12-10 MEDIUM 6.1 CVE-2023-28874 The next parameter in the /accounts/login endpoint of Seafile 9.0.6 allows attackers to redirect users to arbitrary sites. Seafile No fix yet Fix from $1,6002023-12-09 MEDIUM 6.1 CVE-2023-48928 Franklin Fueling Systems System Sentinel AnyWare (SSA) version 1.6.24.492 is vulnerable to Open Redirect. The 'path' parameter of the prefs.asp resou… System Sentinel Anyware No fix yet Fix from $1,6002023-12-08 MEDIUM 6.1 CVE-2023-45762 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Michael Uno (miunosoft) Responsive Column Widgets.This issue affects Responsive … Responsive Column Widgets after 1.2.7 Fix from $1,6002023-12-07 MEDIUM 6.1 CVE-2023-47548 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in SoftLab Integrate Google Drive – Browse, Upload, Download, Embed, Play, Share, G… Integrate Google Drive 1.3.3+ Fix from $1,6002023-12-07 MEDIUM 6.1 CVE-2023-48325 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in PluginOps Landing Page Builder – Lead Page – Optin Page – Squeeze Page – WordPre… Landing Page Builder 1.5.1.6+ Fix from $1,6002023-12-07 MEDIUM 6.1 CVE-2023-47779 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks. Integration for Constant Contact and Contact Form 7, WPForms, Element… Integration For Constant Contact And Contact Form 7\, Wpforms\, Elementor\, Ninja 1.1.5+ Fix from $1,6002023-12-07 MEDIUM 6.1 CVE-2023-46688 Open redirect vulnerability in Pleasanter 1.3.47.0 and earlier allows a remote unauthenticated attacker to redirect users to arbitrary web sites via … Pleasanter after 1.3.47.0 Fix from $1,6002023-12-06 HIGH 7.5 CVE-2023-49240 Unauthorized access vulnerability in the launcher module. Successful exploitation of this vulnerability may affect service confidentiality. Emui No fix yet Fix from $1,9502023-12-06 MEDIUM 6.1 CVE-2023-48815 kkFileView v4.3.0 is vulnerable to Incorrect Access Control. Kkfileview No fix yet Fix from $1,6002023-12-04 MEDIUM 6.1 CVE-2023-49281 Calendarinho is an open source calendaring application to manage large teams of consultants. An Open Redirect issue occurs when a web application red… Calendarinho 2023-10-11+ Fix from $1,6002023-12-01 MEDIUM 5.4 CVE-2023-42502 An authenticated attacker with update datasets permission could change a dataset link to an untrusted site by spoofing the HTTP Host header, users co… Superset 3.0.0+ Fix from $1,6002023-11-28 MEDIUM 6.1 CVE-2023-47168 Mattermost fails to properly check a redirect URL parameter allowing for an open redirect was possible when the user clicked "Back to Mattermost" aft… Mattermost after 9.0.1 Fix from $1,6002023-11-27 MEDIUM 6.1 CVE-2023-49104 An issue was discovered in ownCloud owncloud/oauth2 before 0.6.1, when Allow Subdomains is enabled. An attacker is able to pass in a crafted redirect… Oauth2 0.6.1+ Fix from $1,6002023-11-21 MEDIUM 6.1 CVE-2023-49061 An attacker could have performed HTML template injection via Reader Mode and exfiltrated user information. This vulnerability affects Firefox for iOS… Firefox Mobile 120.0+ Fix from $1,6002023-11-21