CWE-601— URL Redirection to Untrusted Site (Open Redirect)
The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.— MITRE CWE catalog
1,632 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-601page 11 of 33
- CVE-2021-21579MEDIUMCVSS 6.1EG 6.12021-08-03
Dell EMC iDRAC9 versions prior to 4.40.40.00 contain an open redirect vulnerability. A remote unauthenticated attacker may exploit this vulnerability to redirect users to arbitrary web URLs by tricking the victim users to click on maliciou…
- CVE-2021-22098MEDIUMCVSS 6.1EG 6.12021-08-11
UAA server versions prior to 75.4.0 are vulnerable to an open redirect vulnerability. A malicious user can exploit the open redirect vulnerability by social engineering leading to take over of victims’ accounts in certain cases along wit…
- CVE-2021-22141MEDIUMCVSS 6.1EG 6.12022-11-18
An open redirect flaw was found in Kibana versions before 7.13.0 and 6.8.16. If a logged in user visits a maliciously crafted URL, it could result in Kibana redirecting the user to an arbitrary website.
- CVE-2021-22526MEDIUMCVSS 4.9EG 4.92021-09-13
Open Redirection vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4
- CVE-2021-22873HIGHCVSS 6.1EG 8.02021-01-26
Revive Adserver before 5.1.0 is vulnerable to open redirects via the `dest`, `oadest`, and/or `ct0` parameters of the lg.php and ck.php delivery scripts. Such open redirects had previously been available by design to allow third party ad s…
- CVE-2021-22881CRITICALCVSS 6.1EG 9.02021-02-11
The Host Authorization middleware in Action Pack before 6.1.2.1, 6.0.3.5 suffers from an open redirect vulnerability. Specially crafted `Host` headers in combination with certain "allowed host" formats can cause the Host Authorization midd…
- CVE-2021-22903MEDIUMCVSS 6.1EG 6.12021-06-11
The actionpack ruby gem before 6.1.3.2 suffers from a possible open redirect vulnerability. Specially crafted Host headers in combination with certain "allowed host" formats can cause the Host Authorization middleware in Action Pack to red…
- CVE-2021-22942MEDIUMCVSS 6.1EG 6.12021-10-18
A possible open redirect vulnerability in the Host Authorization middleware in Action Pack >= 6.0.0 that could allow attackers to redirect users to a malicious website.
- CVE-2021-22963MEDIUMCVSS 6.1EG 6.12021-10-14
A redirect vulnerability in the fastify-static module version < 4.2.4 allows remote attackers to redirect users to arbitrary websites via a double slash // followed by a domain: http://localhost:3000//google.com/%2e%2e.The issue shows up o…
- CVE-2021-22964HIGHCVSS 8.8EG 8.82021-10-14
A redirect vulnerability in the `fastify-static` module version >= 4.2.4 and < 4.4.1 allows remote attackers to redirect Mozilla Firefox users to arbitrary websites via a double slash `//` followed by a domain: `http://localhost:3000//a//y…
- CVE-2021-22984MEDIUMCVSS 6.1EG 6.12021-02-12
On BIG-IP Advanced WAF and ASM version 15.1.x before 15.1.0.2, 15.0.x before 15.0.1.4, 14.1.x before 14.1.2.5, 13.1.x before 13.1.3.4, 12.1.x before 12.1.5.2, and 11.6.x before 11.6.5.2, when receiving a unauthenticated client request with…
- CVE-2021-23052MEDIUMCVSS 6.1EG 6.12021-09-14
On version 14.1.x before 14.1.4.4 and all versions of 13.1.x, an open redirect vulnerability exists on virtual servers enabled with a BIG-IP APM access policy. This vulnerability allows an unauthenticated malicious user to build an open re…
- CVE-2021-23384MEDIUMCVSS 5.4EG 5.42021-05-17
The package koa-remove-trailing-slashes before 2.0.2 are vulnerable to Open Redirect via the use of trailing double slashes in the URL when accessing the vulnerable endpoint (such as https://example.com//attacker.example/). The vulnerable …
- CVE-2021-23385MEDIUMCVSS 5.4EG 6.12022-08-02
This affects all versions of package Flask-Security. When using the get_post_logout_redirect and get_post_login_redirect functions, it is possible to bypass URL validation and redirect a user to an arbitrary URL by providing multiple back …
- CVE-2021-23387MEDIUMCVSS 5.4EG 5.42021-05-24
The package trailing-slash before 2.0.1 are vulnerable to Open Redirect via the use of trailing double slashes in the URL when accessing the vulnerable endpoint (such as https://example.com//attacker.example/). The vulnerable code is in in…
- CVE-2021-23393MEDIUMCVSS 5.4EG 5.42021-06-11
This affects the package Flask-Unchained before 0.9.0. When using the the _validate_redirect_url function, it is possible to bypass URL validation and redirect a user to an arbitrary URL by providing multiple back slashes such as \\\evil.c…
- CVE-2021-23401MEDIUMCVSS 5.4EG 5.42021-07-05
This affects all versions of package Flask-User. When using the make_safe_url function, it is possible to bypass URL validation and redirect a user to an arbitrary URL by providing multiple back slashes such as /////evil.com/path or \\\evi…
- CVE-2021-23435HIGHCVSS 7.6EG 7.62021-09-12
This affects the package clearance before 2.5.0. The vulnerability can be possible when users are able to set the value of session[:return_to]. If the value used for return_to contains multiple leading slashes (/////example.com) the user e…
- CVE-2021-23495MEDIUMCVSS 5.4EG 5.42022-02-25
The package karma before 6.3.16 are vulnerable to Open Redirect due to missing validation of the return_url query parameter.
- CVE-2021-23888MEDIUMCVSS 6.3EG 6.32021-03-26
Unvalidated client-side URL redirect vulnerability in McAfee ePolicy Orchestrator (ePO) prior to 5.10 Update 10 could cause an authenticated ePO user to load an untrusted site in an ePO iframe which could steal information from the authent…
- CVE-2021-24165MEDIUMCVSS 6.1EG 6.12021-04-05
In the Ninja Forms Contact Form WordPress plugin before 3.4.34, the wp_ajax_nf_oauth_connect AJAX action was vulnerable to open redirect due to the use of a user supplied redirect parameter and no protection in place.
- CVE-2021-24210MEDIUMCVSS 6.1EG 6.12021-04-05
There is an open redirect in the PhastPress WordPress plugin before 1.111 that allows an attacker to malform a request to a page with the plugin and then redirect the victim to a malicious page. There is also a support comment from another…
- CVE-2021-24288MEDIUMCVSS 6.1EG 6.12021-05-17
When subscribing using AcyMailing, the 'redirect' parameter isn't properly sanitized. Turning the request from POST to GET, an attacker can craft a link containing a potentially malicious landing page and send it to the victim.
- CVE-2021-24358MEDIUMCVSS 6.1EG 6.12021-06-14
The Plus Addons for Elementor Page Builder WordPress plugin before 4.1.10 did not validate a redirect parameter on a specifically crafted URL before redirecting the user to it, leading to an Open Redirect issue.
- CVE-2021-24406MEDIUMCVSS 6.1EG 6.12021-07-06
The wpForo Forum WordPress plugin before 1.9.7 did not validate the redirect_to parameter in the login form of the forum, leading to an open redirect issue after a successful login. Such issue could allow an attacker to induce a user to us…
- CVE-2021-24838MEDIUMCVSS 6.1EG 6.12022-01-17
The AnyComment WordPress plugin before 0.3.5 has an API endpoint which passes user input via the redirect parameter to the wp_redirect() function without being validated first, leading to an Open Redirect issue, which according to the vend…
- CVE-2021-25028MEDIUMCVSS 6.1EG 6.12022-01-24
The Event Tickets WordPress plugin before 5.2.2 does not validate the tribe_tickets_redirect_to parameter before redirecting the user to the given value, leading to an arbitrary redirect issue
- CVE-2021-25033MEDIUMCVSS 6.1EG 6.12022-02-14
The WordPress Newsletter Plugin WordPress plugin before 1.6.5 does not validate the to parameter before redirecting the user to its given value, leading to an open redirect issue
- CVE-2021-25074MEDIUMCVSS 6.1EG 6.12022-01-24
The WebP Converter for Media WordPress plugin before 4.0.3 contains a file (passthru.php) which does not validate the src parameter before redirecting the user to it, leading to an Open Redirect issue
- CVE-2021-25111MEDIUMCVSS 6.1EG 6.12022-04-25
The English WordPress Admin WordPress plugin before 1.5.2 does not validate the admin_custom_language_return_url before redirecting users o it, leading to an open redirect issue
- CVE-2021-25640MEDIUMCVSS 6.1EG 6.12021-06-01
In Apache Dubbo prior to 2.6.9 and 2.7.9, the usage of parseURL method will lead to the bypass of white host check which can cause open redirect or SSRF vulnerability.
- CVE-2021-25655MEDIUMCVSS 4.4EG 4.42021-06-24
A vulnerability in the system Service Menu component of Avaya Aura Experience Portal may allow URL Redirection to any untrusted site through a crafted attack. Affected versions include 7.0 through 7.2.3 (without hotfix) and 8.0.0 (without …
- CVE-2021-25737LOWCVSS 2.7EG 2.72021-09-06
A security issue was discovered in Kubernetes where a user may be able to redirect pod traffic to private networks on a Node. Kubernetes already prevents creation of Endpoint IPs in the localhost or link-local range, but the same validatio…
- CVE-2021-25757MEDIUMCVSS 6.1EG 6.12021-02-03
In JetBrains Hub before 2020.1.12629, an open redirect was possible.
- CVE-2021-27352MEDIUMCVSS 5.4EG 5.42021-03-29
An open redirect vulnerability in Ilch CMS version 2.1.42 allows attackers to redirect users to an attacker's site after a successful login.
- CVE-2021-27404MEDIUMCVSS 6.1EG 6.12021-02-19
Askey RTF8115VW BR_SV_g11.11_RTF_TEF001_V6.54_V014 devices allow injection of a Host HTTP header.
- CVE-2021-27612MEDIUMCVSS 6.1EG 6.12021-05-11
In specific situations SAP GUI for Windows until and including 7.60 PL9, 7.70 PL0, forwards a user to specific malicious website which could contain malware or might lead to phishing attacks to steal credentials of the victim.
- CVE-2021-28125HIGHCVSS 6.1EG 7.82021-04-27
Apache Superset up to and including 1.0.1 allowed for the creation of an external URL that could be malicious. By not checking user input for open redirects the URL shortener functionality would allow for a malicious user to create a short…
- CVE-2021-28861HIGHCVSS 7.4EG 7.42022-08-23
Python 3.x through 3.10 has an open redirection vulnerability in lib/http/server.py due to no protection against multiple (/) at the beginning of URI path which may leads to information disclosure. NOTE: this is disputed by a third party b…
- CVE-2021-29137MEDIUMCVSS 6.1EG 6.12021-04-29
A remote URL redirection vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Platform that address this security vulnerability.
- CVE-2021-29217MEDIUMCVSS 6.1EG 6.12022-02-24
A remote URL redirection vulnerability was discovered in HPE OneView Global Dashboard version(s): Prior to 2.5. HPE has provided a software update to resolve this vulnerability in HPE OneView Global Dashboard.
- CVE-2021-29456MEDIUMCVSS 5.7EG 5.72021-04-21
Authelia is an open-source authentication and authorization server providing 2-factor authentication and single sign-on (SSO) for your applications via a web portal. In versions 4.27.4 and earlier, utilizing a HTTP query parameter an attac…
- CVE-2021-29622MEDIUMCVSS 6.5EG 6.52021-05-19
Prometheus is an open-source monitoring system and time series database. In 2.23.0, Prometheus changed its default UI to the New ui. To ensure a seamless transition, the URL's prefixed by /new redirect to /. Due to a bug in the code, it is…
- CVE-2021-29651MEDIUMCVSS 6.1EG 6.12021-04-02
Pomerium before 0.13.4 has an Open Redirect (issue 1 of 2).
- CVE-2021-29652MEDIUMCVSS 6.1EG 6.12021-04-02
Pomerium from version 0.10.0-0.13.3 has an Open Redirect in the user sign-in/out process
- CVE-2021-29864MEDIUMCVSS 6.1EG 6.12022-08-30
IBM Security Identity Manager 6.0 and 6.0.2 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulner…
- CVE-2021-30888HIGHCVSS 7.4EG 7.42021-08-24
An information leakage issue was addressed. This issue is fixed in iOS 15.1 and iPadOS 15.1, macOS Monterey 12.0.1, iOS 14.8.1 and iPadOS 14.8.1, tvOS 15.1, watchOS 8.1. A malicious website using Content Security Policy reports may be able…
- CVE-2021-31252MEDIUMCVSS 6.1EG 6.12021-06-04
An open redirect vulnerability exists in BF-630, BF-450M, BF-430, BF-431, BF631-W, BF830-W, Webpass, and SEMAC devices from CHIYU Technology that can be exploited by sending a link that has a specially crafted URL to convince the user to c…
- CVE-2021-31879MEDIUMCVSS 6.1EG 6.12021-04-29
GNU Wget through 1.21.1 does not omit the Authorization header upon a redirect to a different origin, a related issue to CVE-2018-1000007.
- CVE-2021-3189MEDIUMCVSS 6.1EG 6.12021-02-19
The slashify package 1.0.0 for Node.js allows open-redirect attacks, as demonstrated by a localhost:3000///example.com/ substring.
Map vulnerabilities like CWE-601 to your infrastructure
EchelonGraph correlates every CVE — across CWE-601 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →