Falhas do tipo CWE-601

1.187 resultados

Redirecionamento aberto (Open Redirect)

É quando uma aplicação redireciona o usuário para uma URL fornecida por ele (parâmetro, query string, etc.) sem validar se o destino é confiável. Um atacante controla para onde a vítima é levada, usando a reputação da aplicação legítima para enganá-la e roubar credenciais ou distribuir malware.

Exemplo

Um site de login tem `redirect.php?url=https://exemplo.com/dashboard`. O atacante muda para `redirect.php?url=https://site-falso.com` e envia o link falso por phishing. A vítima clica confiando no domínio legítimo e acaba em um site fake que coleta suas credenciais.

Como mitigar

Valide e whitelist as URLs permitidas antes de redirecionar — nunca confie no input do usuário. Alternativamente, use IDs ou tokens que mapeiem para destinos pré-aprovados, ou verifique se a URL pertence ao mesmo domínio (validação com regex ou parsing seguro da URL).

CVE-2026-48012MEDIUMShopware SSO referer trust leading to an arbitrary redirect targetEPSS 0.3%CVE-2026-41226MEDIUMOpen redirect vulnerability exists in Multiple laser printers and MFPs which implement Ricoh Web Image Monitor. When accessing a specially cEPSS 0.3%CVE-2026-59717MEDIUMHome Assistant Companion: `homeassistant://invite` Deep Link Credential PhishingEPSS 0.3%CVE-2024-47648MEDIUMWordPress EventPrime plugin <= 4.0.4.5 - Open Redirection vulnerabilityEPSS 0.3%CVE-2026-54072CRITICALAuthorizer: Unvalidated redirect_uri in /authorize leaks OAuth2 tokens to attacker-controlled URLEPSS 0.3%CVE-2026-65388HIGHA remote attacker who controls a container registry may be able to direct a client's token request to a host of the attacker's choice, and dEPSS 0.3%CVE-2025-2091MEDIUMOpen redirection in M-Files MobileEPSS 0.3%CVE-2026-61181HIGHVulnerability in the Oracle Agile Product Lifecycle Management for Process product of Oracle Supply Chain (component: Product Quality ManageEPSS 0.3%CVE-2023-53901HIGHWBCE CMS 1.6.1 Cross-Site Scripting and Open Redirect VulnerabilityEPSS 0.3%CVE-2026-69087HIGHGrav Form Plugin before 9.1.13 Open Redirect via form.value() TwigEPSS 0.3%CVE-2024-37234LOWWordPress Academy LMS plugin <= 2.0.4 - Open Redirection vulnerabilityEPSS 0.3%CVE-2025-65954MEDIUMSimpleSAMLphp-casserver has an Open Redirect vulnerability via logoutEPSS 0.3%CVE-2026-2709MEDIUMbusy Callback app.js redirectEPSS 0.3%CVE-2025-3522MEDIUMLeak of hashed Window credentials via crafted attachment URLEPSS 0.3%CVE-2026-39940MEDIUMChurchCRM has an Open Redirect via the ‘linkBack’ URL Parameter in DonatedItemEditor.phpEPSS 0.3%CVE-2026-55834MEDIUMPocket ID: Open Redirect on the OIDC /authorize page via unvalidated redirect_uri with prompt=noneEPSS 0.3%CVE-2024-55452MEDIUMA URL redirection vulnerability exists in UJCMS 9.6.3 due to improper validation of URLs in the upload and rendering of new block / carouselEPSS 0.3%CVE-2025-1300MEDIUMOpen redirect in CodeChecker web serverEPSS 0.3%CVE-2025-52552MEDIUMFastGPT LastRoute Parameter on Login Page Vulnerable to Open Redirect and DOM-based XSSEPSS 0.3%CVE-2026-1970MEDIUMEdimax BR-6258n formStaDrvSetup redirectEPSS 0.3%