Falhas do tipo CWE-601

1.187 resultados

Redirecionamento aberto (Open Redirect)

É quando uma aplicação redireciona o usuário para uma URL fornecida por ele (parâmetro, query string, etc.) sem validar se o destino é confiável. Um atacante controla para onde a vítima é levada, usando a reputação da aplicação legítima para enganá-la e roubar credenciais ou distribuir malware.

Exemplo

Um site de login tem `redirect.php?url=https://exemplo.com/dashboard`. O atacante muda para `redirect.php?url=https://site-falso.com` e envia o link falso por phishing. A vítima clica confiando no domínio legítimo e acaba em um site fake que coleta suas credenciais.

Como mitigar

Valide e whitelist as URLs permitidas antes de redirecionar — nunca confie no input do usuário. Alternativamente, use IDs ou tokens que mapeiem para destinos pré-aprovados, ou verifique se a URL pertence ao mesmo domínio (validação com regex ou parsing seguro da URL).

CVE-2026-47045MEDIUMVulnerability in the JDBC component of Oracle Database Server. Supported versions that are affected are 19.3-19.31, 21.3-21.22 and 23.4.0-EPSS 0.4%CVE-2026-33102CRITICALMicrosoft 365 Copilot Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2022-41207MEDIUMSAP Biller Direct allows an unauthenticated attacker to craft a legitimate looking URL. When clicked by an unsuspecting victim, it will use EPSS 0.4%CVE-2023-20886HIGHVMware Workspace ONE UEM console contains an open redirect vulnerability. A malicious actor may be able to redirect a victim to an attackeEPSS 0.4%CVE-2024-56734HIGHBetter Auth has an Open Redirect Vulnerability in Verify Email EndpointEPSS 0.4%CVE-2024-22854MEDIUMDOM-based HTML injection vulnerability in the main page of Darktrace Threat Visualizer version 6.1.27 (bundle version 61050) and before has EPSS 0.4%CVE-2024-22113MEDIUMOpen redirect vulnerability in Access analysis CGI An-Analyzer released in 2023 December 31 and earlier allows a remote unauthenticated attaEPSS 0.4%CVE-2025-48936HIGHZITADEL Allows Account Takeover via Malicious X-Forwarded-Proto Header InjectionEPSS 0.4%CVE-2026-43941CRITICALUnvalidated shell.openExternal in electerm allows arbitrary protocol execution via terminal link clickEPSS 0.4%CVE-2025-54145CRITICALScanning a malicious URL utilizing Firefox's open-text scheme with the QR code scanner could load arbitrary websitesEPSS 0.4%CVE-2023-35948MEDIUMNovu Open Redirect Vulnerability in Sign-In with GitHub FunctionalityEPSS 0.4%CVE-2023-45762MEDIUMWordPress Responsive Column Widgets Plugin <= 1.2.7 is vulnerable to Open RedirectionEPSS 0.4%CVE-2025-50182MEDIUMurllib3 does not control redirects in browsers and Node.jsEPSS 0.4%CVE-2024-47530MEDIUMScout contains an Open Redirect on Login via `next`EPSS 0.4%CVE-2025-61587LOWWeblate integration with Anubis can lead to Open Redirect via redir parameterEPSS 0.4%CVE-2023-45201MEDIUMOnline Examination System v1.0 - Multiple Open RedirectsEPSS 0.4%CVE-2026-77386MEDIUMKyoo: OIDC login token can be redirected to an attacker-controlled URLEPSS 0.4%CVE-2023-47548MEDIUMWordPress Integrate Google Drive Plugin <= 1.3.2 is vulnerable to Open RedirectionEPSS 0.4%CVE-2023-48325MEDIUMWordPress Landing Page Builder Plugin <= 1.5.1.5 is vulnerable to Open RedirectionEPSS 0.4%CVE-2024-39097MEDIUMThere is an Open Redirect vulnerability in Gnuboard v6.0.4 and below via the `url` parameter in login path.EPSS 0.4%