Vulnerability index

Browse CVEs

13 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Open RedirectCWE-601 × clear
Debian Linux HIGH 7.4
CVE-2025-3155EPSS 13%

A flaw was found in Yelp. The Gnome user help application allows the help document to execute arbitrary scripts. This vulnerability allows malicious …

No fix yet
Fix from $1,950 2025-04-03
Debian Linux MEDIUM 6.1
CVE-2022-23527

mod_auth_openidc is an OpenID Certified™ authentication and authorization module for the Apache 2.x HTTP server. Versions prior to 2.4.12.2 are vulne…

Fix: 2.4.12.2+
Fix from $1,600 2022-12-14
Debian Linux MEDIUM 6.1
CVE-2022-0235

node-fetch is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor

Fix: 1.0 / 2.6.7+
Fix from $1,600 2022-01-16
Debian Linux MEDIUM 6.1
CVE-2021-21330

aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. In aiohttp before version 3.7.4 there is an open redirect vulnerabili…

Fix: 3.7.4+
Fix from $1,600 2021-02-26
Debian Linux MEDIUM 6.1
CVE-2020-29565

An issue was discovered in OpenStack Horizon before 15.3.2, 16.x before 16.2.1, 17.x and 18.x before 18.3.3, 18.4.x, and 18.5.x. There is a lack of v…

Fix: 15.3.2 / 16.2.1+
Fix from $1,600 2020-12-04
Debian Linux MEDIUM 6.1
CVE-2020-26215

Jupyter Notebook before version 6.1.5 has an Open redirect vulnerability. A maliciously crafted link to a notebook server could redirect the browser …

Fix: 6.1.5+
Fix from $1,600 2020-11-18
Debian Linux MEDIUM 6.1
CVE-2019-20479

A flaw was found in mod_auth_openidc before version 2.4.1. An open redirect issue exists in URLs with a slash and backslash at the beginning.

Fix: 2.4.1+
Fix from $1,600 2020-02-20
Debian Linux MEDIUM 6.1
CVE-2019-19709

MediaWiki through 1.33.1 allows attackers to bypass the Title_blacklist protection mechanism by starting with an arbitrary title, establishing a non-…

Fix: after 1.33.1
Fix from $1,600 2019-12-11
Debian Linux MEDIUM 6.1
CVE-2016-1000108

yaws before 2.0.4 does not attempt to address RFC 3875 section 4.1.18 namespace conflicts and therefore does not protect CGI applications from the pr…

Fix: 2.0.4+
Fix from $1,600 2019-12-10
Debian Linux MEDIUM 6.1
CVE-2016-10742

Zabbix before 2.2.21rc1, 3.x before 3.0.13rc1, 3.1.x and 3.2.x before 3.2.10rc1, and 3.3.x and 3.4.x before 3.4.4rc1 allows open redirect via the req…

Fix: after 3.4.3
Fix from $1,600 2019-02-17
Debian Linux MEDIUM 6.1
CVE-2018-1000671

sympa version 6.2.16 and later contains a CWE-601: URL Redirection to Untrusted Site ('Open Redirect') vulnerability in The "referer" parameter of th…

No fix yet
Fix from $1,600 2018-09-06
Debian Linux MEDIUM 6.1
CVE-2017-0363

Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 has a flaw where Special:UserLogin?returnto=interwiki:foo will redirect to external sites.

Fix: 1.27.2 / 1.28.1+
Fix from $1,600 2018-04-13
Debian Linux MEDIUM 6.1
CVE-2017-0364

Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains a flaw where Special:Search allows redirects to any interwiki link.

Fix: 1.27.2 / 1.28.1+
Fix from $1,600 2018-04-13