React Router is a router for React. In versions 7.0.0 through 7.14.0 and 6.7.0 through 6.30.3, certain URLs passed to th
authentik is an open-source identity provider. Prior to version 2026.2.3, the WS-Federation provider validates the user-
A URL validation flaw in the MISP dashboard button widget allowed a crafted relative-looking URL to be accepted as a loc
An open redirect vulnerability existed in MISP UsersController::routeafterlogin() because the value stored in the pre_lo
HCL Digital Experience and HCL Digital Experience Compose could be susceptible to Host header injection. An attacker ca
Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by an Improper Redirect (Open Redire
Spring Security Authorization Server's authorization endpoint performs insufficient validation of the request_uri parame
Spring Security's CookieRequestCache and CookieServerRequestCache store the pre-authentication request URL in a browser
Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, th
The Aqara IAM/SSO Gateway (gw-builder.aqara.com) provides an open redirect, which is an instance of "CWE-601: URL Redire
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Apache APISIX. The default configuration of cas-au
AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, DigestAuthMiddleware ca
WebOb provides objects for HTTP requests and responses. Prior to 1.8.10, the normalization of the HTTP Location header d
Nuxt versions 4.0.0 before 4.4.7 and 3.x before 3.21.7 contain a server-side open redirect vulnerability in navigateTo t
Nuxt versions 4.0.0 before 4.4.7 and 3.x before 3.21.7 accept protocol-relative paths such as //evil.com in the reloadNu
Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior are vulnerable to Open Red
URL redirection to untrusted site ('open redirect') vulnerability in The Wikimedia Foundation Mediawiki - UrlShortener E
Gitea versions up to and including 1.25.4 allow redirect bypasses through raw or percent-encoded backslashes in redirect
CakePHP Authentication is an authentication plugin for CakePHP that can also be used in PSR-7 based applications. Prior
Snipe-IT is an IT asset/license management system. Prior to 8.6.2, the user edit flow stores url()->previous() from the
Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.4
Adobe Commerce is affected by an Improper Redirect (Open Redirect) vulnerability that could result in a Security feature
Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.53, 6.4.4
Redash is a package for data visualization and sharing. From 5.0.2 to 26.3.0, the get_next_path() function in Redash's a
Joomla Extension - hikashop.com - Open redirect in Hikashop < 6.5.2 - The Joomla extension Hikashop is vulnerable to an
URL redirection to untrusted site ('open redirect') vulnerability in Universal Software Inc. FlexCity allows Input Data
Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: UI Framewo
Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (component: Internal Operations). Supported ver
Vulnerability in the Oracle Knowledge Management product of Oracle E-Business Suite (component: Search). Supported vers
Vulnerability in the Oracle Contracts Integration product of Oracle E-Business Suite (component: Internal Operations).
Next.js is a React framework for building full-stack web applications. In versions 12.0.0 through 15.5.20 and 16.0.0 thr
React Router is a router for React. Versions 6.0.0 through 7.17.0 are vulnerable to Open Redirtect through use of backsl
An unauthenticated remote attacker can abuse the improper validation of the post-login redirect of the web-UI to trick
Leantime 3.6.2 contains an open redirect vulnerability in the Login controller that allows unauthenticated attackers to
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in the HTML5 scrubber in rrrene html_sanitize_ex allow
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in the HTML5 scrubber in rrrene html_sanitize_ex allow
Saurus CMS Community Edition contains an unauthenticated open redirect vulnerability in the logout handling code in clas
Etherpad is a real-time collaborative editor. From 2.1.0 until 3.1.0, Etherpad uses the attacker-controlled x-proxy-path
WebOb provides objects for HTTP requests and responses. Prior to 1.8.11, Response._make_location_absolute() in src/webob
UrlHandlerFilter can be vulnerable to an open redirect when configured with very broadly matching patterns. The issue ap
A Spring MVC application that uses UrlFileNameViewController that is mapped with an end-of-path, and does not have a con
In versions of Spring Authorization Server 1.5.0 through 1.5.7, the authorization endpoint performs insufficient validat
pac4j-core before 6.5.6 contains an open redirect vulnerability in DefaultLogoutLogic.perform() that accepts backslash-p
Backstage is an open framework for building developer portals. Prior to 0.27.1, the experimental OIDC provider in @backs
Snipe-IT is an IT asset/license management system. Prior to 8.4.1, an open redirect vulnerability in Snipe-IT allows att
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Drupal Drupal core allows Content Spoofing. This is
A malicious or compromised OData service could disclose sensitive authentication information and inject untrusted data i
Docling-Graph turns documents into validated Pydantic objects, then builds a directed knowledge graph with explicit sema
Punk::OAuth2 versions before 0.03 for Perl allow an attacker-chosen off-site redirect after login because same_origin_pa
OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to version 6.
Frequently Asked Questions
What is CWE-601?
CWE-601 (CWE-601) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-601?
There are 1,953 CVE records associated with CWE-601 in our database. Of these, 31 are critical severity, 165 are high severity, and 1323 are medium severity.
How can I protect against CWE-601 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-601 using AI-powered security agents.
Detect CWE-601 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-601 vulnerabilities across your infrastructure.
Get Started