CWE-601

Low likelihood

URL Redirection to Untrusted Site ('Open Redirect')

Parent: CWE-610 - Externally Controlled Reference to a Resource in Another Sphere

The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.

1,448 vulnerabilities with CWE-601
CVE-2025-35059 MEDIUM
Newforma Project Center < 2024.1 - Open Redirect
CVSS 4.3
CVE-2025-0608 MEDIUM
Logo Cloud <2025.R6 - Open Redirect
CVSS 5.5
CVE-2025-61606 MEDIUM
WeGIA <3.4.12 - Open Redirect
CVSS 6.1
CVE-2025-54088 MEDIUM
Absolute Secure Access < 14.10 - Open Redirect
CVSS 6.1
CVE-2025-11240 HIGH
KNIME Business Hub <1.16.0 - Open Redirect
CVSS 7.2
CVE-2025-61587 MEDIUM
Weblate <5.13.2 - Open Redirect
CVSS 6.1
CVE-2025-57879 MEDIUM
Esri Portal For Arcgis - Open Redirect
CVSS 6.1
CVE-2025-57878 MEDIUM
Esri Portal For Arcgis - Open Redirect
CVSS 6.1
CVE-2025-57872 MEDIUM
Esri Portal For Arcgis - Open Redirect
CVSS 6.1
CVE-2025-59426 MEDIUM
Lobehub Lobe Chat < 1.130.1 - Open Redirect
CVSS 4.3
CVE-2025-58006 MEDIUM
WP Gravity Forms Keap/Infusionsoft <1.2.4 - Open Redirect
CVSS 4.7
CVE-2025-7702 MEDIUM
Pusula Communication Information Internet Industry and Trade Ltd. C...
CVSS 4.7
CVE-2025-9084 LOW
Mattermost <10.5.9 - Open Redirect
CVSS 3.1
CVE-2025-9072 HIGH
Mattermost <10.10.1-10.5.9-10.9.4 - Open Redirect
CVSS 7.6
CVE-2025-43795 MEDIUM
Liferay Digital Experience Platform < 7.3 - Open Redirect
CVSS 6.1
CVE-2025-10229 MEDIUM
Freshwork <1.2.3 - Open Redirect
CVSS 4.3
CVE-2025-57665 MEDIUM
Element-plus < 2.10.6 - XSS
CVSS 6.4
CVE-2025-39523 MEDIUM
GoodBarber - Open Redirect
CVSS 4.7
CVE-2025-59013 MEDIUM
Typo3 < 9.5.55 - Open Redirect
CVSS 6.1
CVE-2025-20291 MEDIUM
Cisco Webex Meetings - Open Redirect
CVSS 4.3
CVE-2025-58067 MEDIUM
Rubygems Google Sign IN < 1.3.1 - Open Redirect
CVSS 4.2
CVE-2025-58204 MEDIUM
Podlove Podcast Publisher <4.2.5 - Open Redirect
CVSS 4.7
CVE-2025-57821 MEDIUM
Rubygems Google Sign IN < 1.3.0 - Open Redirect
CVSS 4.2
CVE-2025-20317 HIGH
Cisco IMC - Open Redirect
CVSS 7.1
CVE-2025-2697 HIGH
IBM Cognos Command Center <10.2.5 - Open Redirect
CVSS 7.4
Details
Vulnerabilities 1,448
Exploit Likelihood Low