CWE-601

Low likelihood

URL Redirection to Untrusted Site ('Open Redirect')

Parent: CWE-610 - Externally Controlled Reference to a Resource in Another Sphere

The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.

1,448 vulnerabilities with CWE-601
CVE-2026-0513 MEDIUM
SAP Supplier Relationship Management - Open Redirect
CVSS 4.7
CVE-2026-22032 MEDIUM
Monospace Directus < 11.14.0 - Open Redirect
CVSS 4.3
CVE-2026-21879 MEDIUM
Kanboard < 1.2.49 - Open Redirect
CVSS 4.7
CVE-2025-66447 NONE
Chamilo LMS has validation-less redirect on login page
CVE-2025-61166 MEDIUM
Ascertia SigningHub User v10.0 - Open Redirect
CVSS 6.1
CVE-2025-70032 MEDIUM
Sunbird-Ed SunbirdEd-portal 1.13.4 - Open Redirect
CVSS 6.1
CVE-2025-70037 MEDIUM
Linagora Twake 2023.Q1.1223 - Open Redirect
CVSS 6.1
CVE-2025-69725 MEDIUM
go-chi/chi >=5.2.2 - Open Redirect
CVSS 4.7
CVE-2025-71244 MEDIUM
SPIP <4.4.5/4.3.9 - Open Redirect
CVSS 6.1
CVE-2025-27900 MEDIUM
IBM DB2 Recovery Expert 5.5 IF002 - Open Redirect
CVSS 6.8
CVE-2025-65717 MEDIUM
Visual Studio Code Extensions Live Server <5.7.9 - Info Disclosure
CVSS 4.3
CVE-2025-2418 MEDIUM
TR7 Web Application Firewall 4.30-16022026 - Open Redirect
CVSS 4.3
CVE-2025-66596 MEDIUM
FAST/TOOLS <10.04 - Open Redirect
CVSS 6.1
CVE-2025-67852 LOW
Moodle < 4.1.22 - Open Redirect
CVSS 3.5
CVE-2025-68616 HIGH
WeasyPrint <68.0 - SSRF
CVSS 7.5
CVE-2025-68470 MEDIUM
Shopify React-router < 6.30.1 - Open Redirect
CVSS 6.5
CVE-2025-14524 MEDIUM
curl - SSRF
CVSS 5.3
CVE-2025-61782 MEDIUM
Citeum Opencti < 6.8.3 - Open Redirect
CVSS 5.4
CVE-2025-15112 MEDIUM
Kseniasecurity Lares Firmware - Open Redirect
CVSS 5.4
CVE-2025-15258 LOW
Edimax Br-6208ac Firmware - Open Redirect
CVSS 3.5
CVE-2025-15241 LOW
CloudPanel Community Edition <2.5.1 - Open Redirect
CVSS 3.5
CVE-2025-55060 MEDIUM
Priority Web <= 23.0 - Open Redirect
CVSS 6.1
CVE-2025-60935 MEDIUM
Blitz Panel <1.17.0 - Open Redirect
CVSS 6.1
CVE-2025-68602 MEDIUM
Scott Paterson Accept Donations with PayPal <1.5.1 - Open Redirect
CVSS 4.7
CVE-2025-68509 MEDIUM
Jeff Starr User Submitted Posts - Open Redirect
CVSS 4.7
Details
Vulnerabilities 1,448
Exploit Likelihood Low