Fallos del tipo CWE-601

1187 resultados

Redirecionamento para URL não validada (Open Redirect)

A aplicação redireciona o usuário para uma URL fornecida por ele (parâmetro GET/POST, referer, etc.) sem validar se o destino é confiável. Um atacante pode usar isso para levar vítimas a sites maliciosos, phishing ou roubo de credenciais, enquanto a URL legítima da sua app aparece no clique inicial.

Ejemplo

Um site de e-commerce redireciona após login com `redirect.php?url=google.com`. Um atacante envia `redirect.php?url=seusite-fake.com` disfarçado de e-mail de confirmação. A vítima clica, vê a URL legítima na barra de endereço até o redirecionamento, e cai em um fake convincente.

Cómo mitigar

Valide a URL de destino contra uma whitelist de domínios permitidos ou, no mínimo, verifique se o host da URL é o seu próprio domínio antes de redirecionar. Nunca redirecione para URLs externas fornecidas pelo usuário sem controle explícito.

CVE-2026-48012MEDIUMShopware SSO referer trust leading to an arbitrary redirect targetEPSS 0.3%CVE-2026-41226MEDIUMOpen redirect vulnerability exists in Multiple laser printers and MFPs which implement Ricoh Web Image Monitor. When accessing a specially cEPSS 0.3%CVE-2026-59717MEDIUMHome Assistant Companion: `homeassistant://invite` Deep Link Credential PhishingEPSS 0.3%CVE-2024-47648MEDIUMWordPress EventPrime plugin <= 4.0.4.5 - Open Redirection vulnerabilityEPSS 0.3%CVE-2026-54072CRITICALAuthorizer: Unvalidated redirect_uri in /authorize leaks OAuth2 tokens to attacker-controlled URLEPSS 0.3%CVE-2026-65388HIGHA remote attacker who controls a container registry may be able to direct a client's token request to a host of the attacker's choice, and dEPSS 0.3%CVE-2025-2091MEDIUMOpen redirection in M-Files MobileEPSS 0.3%CVE-2026-61181HIGHVulnerability in the Oracle Agile Product Lifecycle Management for Process product of Oracle Supply Chain (component: Product Quality ManageEPSS 0.3%CVE-2023-53901HIGHWBCE CMS 1.6.1 Cross-Site Scripting and Open Redirect VulnerabilityEPSS 0.3%CVE-2026-69087HIGHGrav Form Plugin before 9.1.13 Open Redirect via form.value() TwigEPSS 0.3%CVE-2024-37234LOWWordPress Academy LMS plugin <= 2.0.4 - Open Redirection vulnerabilityEPSS 0.3%CVE-2025-65954MEDIUMSimpleSAMLphp-casserver has an Open Redirect vulnerability via logoutEPSS 0.3%CVE-2026-2709MEDIUMbusy Callback app.js redirectEPSS 0.3%CVE-2025-3522MEDIUMLeak of hashed Window credentials via crafted attachment URLEPSS 0.3%CVE-2026-39940MEDIUMChurchCRM has an Open Redirect via the ‘linkBack’ URL Parameter in DonatedItemEditor.phpEPSS 0.3%CVE-2026-55834MEDIUMPocket ID: Open Redirect on the OIDC /authorize page via unvalidated redirect_uri with prompt=noneEPSS 0.3%CVE-2024-55452MEDIUMA URL redirection vulnerability exists in UJCMS 9.6.3 due to improper validation of URLs in the upload and rendering of new block / carouselEPSS 0.3%CVE-2025-1300MEDIUMOpen redirect in CodeChecker web serverEPSS 0.3%CVE-2025-52552MEDIUMFastGPT LastRoute Parameter on Login Page Vulnerable to Open Redirect and DOM-based XSSEPSS 0.3%CVE-2026-1970MEDIUMEdimax BR-6258n formStaDrvSetup redirectEPSS 0.3%