Skip to main content

CWE archive

CWE-601 CVEs

Programmatic archive

1,653 CVEs tagged with CWE-60126 Critical, 178 High, 1,343 Medium, 102 Low, 4 Unrated.

CVE-2026-40295

Published May 22, 2026

Devise is an authentication solution for Rails based on Warden. In versions 5.0.3 and below, when the Timeoutable module is enabled in Devise, the FailureApp#redirect_url method r…

CVSS 6.1 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2026-9245

Published May 22, 2026

Improper input validation in the external authentication provider flow in Devolutions Server allows an unauthenticated remote attacker to redirect victims to an attacker-controlle…

CVSS 5.0 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-7504

Published May 19, 2026

A flaw was found in Keycloak's URL validation logic during redirect operations. By crafting a malicious request, an attacker could bypass validation to redirect users to unauthori…

CVSS 8.1 · High
evidence mentions
7
Buzz score
32.3
Vendor/product tagsBeta · best-effort

CVE-2025-65954

Published May 18, 2026

SimpleSAMLphp-casserver is a CAS 1.0 and 2.0 compliant CAS server in the form of a SimpleSAMLphp module. In versions below 6.3.1 and 7.0.0, the logout endpoint accepts a url query…

CVSS 6.1 · Medium
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2026-45037

Published May 15, 2026

Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.232, Tabby's terminal linkifier passes any detected URI directly to the operating system's proto…

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-42207

Published May 15, 2026

Magento Long Term Support (LTS) is an unofficial, community-driven project provides an alternative to the Magento Community Edition e-commerce platform with a high level of backwa…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-44427

Published May 14, 2026

The MCP Registry provides MCP clients with a list of MCP servers, like an app store for MCP servers. From 1.1.0 to 1.7.4, the TrailingSlashMiddleware in internal/api/server.go is…

CVSS 0.0 · Unrated
evidence mentions
1
Buzz score
11.9

CVE-2026-44520

Published May 14, 2026

Docling-Graph turns documents into validated Pydantic objects, then builds a directed knowledge graph with explicit semantic relationships. Prior to 1.5.1, the URLInputHandler cla…

CVSS 5.7 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-45448

Published May 14, 2026

CWE-601 URL redirection to untrusted site ('open redirect')

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-44503

Published May 14, 2026

The RedirectHandler middleware in microsoft/kiota-java (com.microsoft.kiota:microsoft-kiota-http-okHttp v1.9.0) and other Kiota libraries fails to strip sensitive HTTP headers whe…

CVSS 7.0 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-44437

Published May 13, 2026

The Angular SSR is a server-rise rendering tool for Angular applications. From 19.0.0-next.0 to before 19.2.25, 20.3.25, 21.2.9, and 22.0.0-next.7, a vulnerability exists in the X…

CVSS 6.9 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2026-45055

Published May 13, 2026

CubeCart is an ecommerce software solution. Prior to 6.7.2, CubeCart 6.6.x – 6.7.1 builds CC_STORE_URL directly from the Host request header at bootstrap, with no allowlist. The c…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-44372

Published May 13, 2026

Nitro is a next generation server toolkit. Prior to 3.0.260429-beta, an attacker could turn a redirect route rule using wildcards rewrite into a cross-host redirect by sliding an…

CVSS 5.3 · Medium
evidence mentions
4
Buzz score
21.1
Vendor/product tagsBeta · best-effort

CVE-2026-41513

Published May 12, 2026

Horilla is an HR and CRM software. In 1.5.0, the notification endpoints trust the unvalidated next parameter and redirect users to arbitrary external URLs. This allows an attacker…

CVSS 4.8 · Medium
evidence mentions
2
Buzz score
16.0

CVE-2026-42565

Published May 11, 2026

@workos/authkit-session is a toolkit for building WorkOS AuthKit framework integrations. Prior to 0.5.1, an open redirect vulnerability exists in AuthService.handleCallback due to…

CVSS 4.3 · Medium
evidence mentions
3
Buzz score
18.9

CVE-2026-42350

Published May 8, 2026

Kargo manages and automates the promotion of software artifacts. Prior to versions 1.7.10, 1.8.13, 1.9.8, and 1.10.2, Kargo is vulnerable to open redirect in UI OIDC login flow vi…

CVSS 5.1 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-42195

Published May 8, 2026

draw.io is a configurable diagramming and whiteboarding application. Prior to version 29.7.9, the draw.io client accepts a ?gitlab= URL parameter that overrides the GitLab server…

CVSS 3.4 · Low
evidence mentions
3
Buzz score
18.9

CVE-2026-3318

Published May 8, 2026

Open redirection vulnerability in the latest demo version of the Cradle eCommerce platform. The vulnerability occurs in the login form endpoint, where the ‘returnUrl’ parameter al…

CVSS 5.3 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-43941

Published May 8, 2026

electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. In versions 3.8.15 and prior, Electerm's terminal hyperlink handler passes any URL clicke…

CVSS 9.6 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-42259

Published May 7, 2026

Saltcorn is an extensible, open source, no-code database application builder. Prior to versions 1.4.6, 1.5.6, and 1.6.0-beta.5, Saltcorn validates the post-login dest parameter wi…

CVSS 5.1 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-6795

Published May 7, 2026

URL redirection to untrusted site ('open redirect') vulnerability in DivvyDrive Information Technologies Inc. DivvyDrive allows Parameter Injection. This issue affects DivvyDrive…

CVSS 9.6 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2026-41670

Published May 7, 2026

Admidio is an open-source user management solution. Prior to version 5.0.9, the SAML IdP implementation in Admidio's SSO module uses the AssertionConsumerServiceURL value directly…

CVSS 8.2 · High
evidence mentions
2
Buzz score
16.0

CVE-2026-40332

Published May 6, 2026

Masa CMS is affected by an Open Redirect vulnerability due to improper handling of scheme-relative URLs. The application incorrectly interprets paths beginning with double slashes…

CVSS 5.3 · Medium
evidence mentions
1
Buzz score
11.9
Showing 176-200 of 1,653 CVEsPage 8 of 67