Vulnerability index

Browse CVEs

1,444 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Open RedirectCWE-601 × clear
MEDIUM 6.1 CVE-2022-27861 Unauth. Open Redirect vulnerability in Arscode Ninja Popups plugin <= 4.7.5 versions. Ninja Popups after 4.7.5 Fix from $1,6002023-08-10 MEDIUM 6.1 CVE-2023-38998 An open redirect in the Login page of OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 allows attackers to redirect a victim… Opnsense 23.7+ Fix from $1,6002023-08-09 MEDIUM 6.1 CVE-2023-34916 Fuge CMS v1.0 contains an Open Redirect vulnerability via /front/ProcessAct.java. Cms No fix yet Fix from $1,6002023-07-31 MEDIUM 6.1 CVE-2023-34917 Fuge CMS v1.0 contains an Open Redirect vulnerability in member/RegisterAct.java. Cms No fix yet Fix from $1,6002023-07-31 MEDIUM 6.1 CVE-2023-35791 Vound Intella Connect 2.6.0.3 has an Open Redirect vulnerability. Intella Connect No fix yet Fix from $1,6002023-07-31 MEDIUM 6.1 CVE-2021-36580 Open Redirect vulnerability exists in IceWarp MailServer IceWarp Server Deep Castle 2 Update 1 (13.0.1.2) via the referer parameter. Icewarp Server 13.0.1.2+ Fix from $1,6002023-07-27 MEDIUM 6.1 CVE-2023-37624 Netdisco before v2.063000 was discovered to contain an open redirect vulnerability. An attacker may exploit this vulnerability to redirect users to a… Netdisco 2.063000+ Fix from $1,6002023-07-26 MEDIUM 6.1 CVE-2021-39425 SeedDMS v6.0.15 was discovered to contain an open redirect vulnerability. An attacker may exploit this vulnerability to redirect users to arbitrary w… Seeddms Mitigation only Fix from $1,6002023-07-20 MEDIUM 5.4 CVE-2023-30433 IBM Security Verify Access 10.0 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to v… Security Verify Access Mitigation only Fix from $1,6002023-07-19 MEDIUM 6.1 CVE-2023-28020  URL redirection in Login page in HCL BigFix WebUI allows malicious user to redirect the client browser to an external site via redirect URL response… Bigfix Webui Mitigation only Fix from $1,6002023-07-18 MEDIUM 6.1 CVE-2023-3684 A vulnerability was found in LivelyWorks Articart 2.0.1 and classified as problematic. Affected by this issue is some unknown functionality of the fi… Articart Mitigation only Fix from $1,6002023-07-16 MEDIUM 6.1 CVE-2023-37561 Open redirect vulnerability in ELECOM wireless LAN routers and ELECOM wireless LAN repeaters allows a remote unauthenticated attacker to redirect use… Wrh 300wh H Firmware after 2.12 Fix from $1,6002023-07-13 MEDIUM 6.1 CVE-2023-37947 Jenkins OpenShift Login Plugin 1.1.0.227.v27e08dfb_1a_20 and earlier improperly determines that a redirect URL after login is legitimately pointing t… Openshift Login 1.1.0.230.v5d7030b_f5432+ Fix from $1,6002023-07-12 HIGH 8.2 CVE-2023-35934 yt-dlp is a command-line program to download videos from video sites. During file downloads, yt-dlp or the external downloaders that yt-dlp employs m… Fedora 2023.07.06 / 2023.07.06.185519+ Fix from $1,9502023-07-06 MEDIUM 6.1 CVE-2023-35948 Novu provides an API for sending notifications through multiple channels. Versions prior to 0.16.0 contain an open redirect vulnerability in the "Sig… Novu 0.16+ Fix from $1,6002023-07-06 MEDIUM 6.1 CVE-2023-3139 The Protect WP Admin WordPress plugin before 4.0 discloses the URL of the admin panel via a redirection of a crafted URL, bypassing the protection of… Protect Wp Admin 4.0+ Fix from $1,6002023-07-04 MEDIUM 6.1 CVE-2023-28364 An Open Redirect vulnerability exists prior to version 1.52.117, where the built-in QR scanner in Brave Browser Android navigated to scanned URLs aut… Browser 1.52.117+ Fix from $1,6002023-07-01 MEDIUM 6.1 CVE-2023-35171 NextCloud Server and NextCloud Enterprise Server provide file storage for Nextcloud, a self-hosted productivity platform. Starting in version 26.0.0 … Nextcloud Server 26.0.2+ Fix from $1,6002023-06-23 MEDIUM 6.1 CVE-2023-28799 A URL parameter during login flow was vulnerable to injection. An attacker could insert a malicious domain in this parameter, which would redirect th… Client Connector 1.4 / 1.9.3+ Fix from $1,6002023-06-22 MEDIUM 6.1 CVE-2023-33405EPSS 31% Blogengine.net 3.3.8.0 and earlier is vulnerable to Open Redirect. Blogengine.net after 3.3.8.0 Fix from $1,6002023-06-21 MEDIUM 6.1 CVE-2023-34415 When choosing a site-isolated process for a document loaded from a data: URL that was the result of a redirect, Firefox would load that document in t… Firefox 114.0+ Fix from $1,6002023-06-19 MEDIUM 6.1 CVE-2023-24030 An open redirect vulnerability exists in the /preauth Servlet in Zimbra Collaboration Suite through 9.0 and 8.8.15. To exploit the vulnerability, an … Collaboration Mitigation only Fix from $1,6002023-06-15 MEDIUM 5.4 CVE-2023-29307 Adobe Experience Manager versions 6.5.16.0 (and earlier) is affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. A low-pr… Experience Manager 6.5.17.0 / 2023.4+ Fix from $1,6002023-06-15 MEDIUM 6.1 CVE-2023-35029 Open redirect vulnerability in the Layout module's SEO configuration in Liferay Portal 7.4.3.70 through 7.4.3.76, and Liferay DXP 7.4 update 70 throu… Dxp 7.4.3.77+ Fix from $1,6002023-06-15 MEDIUM 6.1 CVE-2021-4348 The Ultimate GDPR & CCPA plugin for WordPress is vulnerable to unauthenticated settings import and export via the export_settings & import_settings f… Ultimate Gdpr \& Ccpa Compliance Toolkit 2.5+ Fix from $1,6002023-06-07 MEDIUM 6.1 CVE-2023-32551 Landscape allowed URLs which caused open redirection. Landscape 19.10.5+ Fix from $1,6002023-06-06 MEDIUM 6.1 CVE-2015-10115 A vulnerability, which was classified as problematic, was found in WooSidebars Sidebar Manager Converter Plugin up to 1.1.1 on WordPress. This affect… Sidebar Manager To Woosidebars Converter after 1.1.1 Fix from $1,6002023-06-05 MEDIUM 6.1 CVE-2015-10113 A vulnerability classified as problematic was found in WooFramework Tweaks Plugin up to 1.0.1 on WordPress. Affected by this vulnerability is the fun… Wooframework Tweaks 1.0.2+ Fix from $1,6002023-06-05 MEDIUM 6.1 CVE-2015-10114 A vulnerability, which was classified as problematic, has been found in WooSidebars Plugin up to 1.4.1 on WordPress. Affected by this issue is the fu… Woosidebars 1.4.2+ Fix from $1,6002023-06-05 MEDIUM 5.4 CVE-2022-4946 The Frontend Post WordPress Plugin WordPress plugin through 2.8.4 does not validate an attribute of one of its shortcode, which could allow users wit… Frontend Post Wordpress Plugin after 2.8.4 Fix from $1,6002023-06-05