CWE-601 指向未可信站点的URL重定向(开放重定向) 类弱点 722 条 CVE 漏洞汇总,含 AI 中文分析。
CWE-601 属于开放重定向漏洞,指应用程序接受用户控制的输入并用于外部链接重定向。攻击者通常利用此缺陷构造恶意 URL,诱导用户点击以跳转至钓鱼或恶意网站,从而窃取凭证或传播恶意软件。开发者应避免直接使用用户输入作为重定向目标,需对目标域名进行白名单校验,或使用经过编码的内部标识符替代直接链接,确保重定向逻辑的安全可控。
$redirect_url = $_GET['url']; header("Location: " . $redirect_url);http://example.com/example.php?url=http://malicious.example.compublic class RedirectServlet extends HttpServlet { protected void doGet(HttpServletRequest request, HttpServletResponse response) throws ServletException, IOException { String query = request.getQueryString(); if (query.contains("url")) { String url = request.getParameter("url"); response.sendRedirect(url); } } }<a href="http://bank.example.com/redirect?url=http://attacker.example.net">Click here to log in</a>| CVE ID | 标题 | CVSS | 风险等级 | Published |
|---|---|---|---|---|
| CVE-2026-42350 | Kargo OIDC登录重定向漏洞 — kargo | - | - | 2026-05-08 |
| CVE-2026-42195 | GitLab URL参数未验证导致OAuth授权重定向漏洞 — drawio | 3.4 | Low | 2026-05-08 |
| CVE-2026-3318 | Cadle电子商务系统多个漏洞 — e-commerce | - | - | 2026-05-08 |
| CVE-2026-42259 | Saltcorn POST /auth/login 开放重定向漏洞 — saltcorn | - | - | 2026-05-07 |
| CVE-2026-6795 | DivvyDrive 开放重定向漏洞 — DivvyDrive | 9.6 | Critical | 2026-05-07 |
| CVE-2026-40332 | Masa CMS 方案相对URL处理不当导致开放重定向漏洞 — MasaCMS | - | - | 2026-05-06 |
| CVE-2026-43576 | OpenClaw <2026.4.5 通过CDP WebSocket的二次跳转SSRF漏洞 — OpenClaw | 7.7 | High | 2026-05-06 |
| CVE-2025-61669 | jupyter_server next参数开放重定向漏洞 — jupyter_server | - | - | 2026-05-05 |
| CVE-2026-42230 | n8n MCP OAuth流程中开放重定向漏洞 — n8n | 6.1AI | MediumAI | 2026-05-04 |
| CVE-2026-41226 | Ricoh Web Image Monitor开放重定向漏洞 — Multiple laser printers and MFPs which implement Web Image Monitor | 6.1AI | MediumAI | 2026-04-30 |
| CVE-2026-33102 | Microsoft M365 Copilot 输入验证错误漏洞 — Microsoft 365 Copilot | 9.3 | Critical | 2026-04-23 |
| CVE-2026-41126 | BigBlueButton 输入验证错误漏洞 — bigbluebutton | 4.3 | Medium | 2026-04-21 |
| CVE-2026-40905 | LinkAce 输入验证错误漏洞 — LinkAce | 8.1 | High | 2026-04-21 |
| CVE-2026-40299 | next-intl 安全漏洞 — next-intl | 6.1AI | MediumAI | 2026-04-17 |
| CVE-2026-40255 | @adonisjs/http-server 安全漏洞 — http-server | 6.1 | Medium | 2026-04-16 |
| CVE-2026-20060 | Cisco Unity Connection 安全漏洞 — Cisco Unity Connection | 4.7 | Medium | 2026-04-15 |
| CVE-2026-21741 | Fortinet FortiNAC-F 输入验证错误漏洞 — FortiNAC-F | 2.2 | Low | 2026-04-14 |
| CVE-2026-34257 | SAP NetWeaver Application Server ABAP 输入验证错误漏洞 — SAP NetWeaver Application Server ABAP | 6.1 | Medium | 2026-04-14 |
| CVE-2026-6203 | WordPress plugin User Registration & Membership 输入验证错误漏洞 — User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder | 6.1 | Medium | 2026-04-13 |
| CVE-2026-39940 | ChurchCRM 输入验证错误漏洞 — CRM | 5.4 | - | 2026-04-13 |
| CVE-2026-32932 | Chamilo LMS 输入验证错误漏洞 — chamilo-lms | 4.7 | Medium | 2026-04-10 |
| CVE-2025-66447 | Chamilo LMS 输入验证错误漏洞 — chamilo-lms | - | - | 2026-04-10 |
| CVE-2026-22560 | Rocket.Chat 安全漏洞 — Rocket.Chat | 6.1 | - | 2026-04-10 |
| CVE-2026-25854 | Apache Tomcat 输入验证错误漏洞 — Apache Tomcat | 6.1AI | MediumAI | 2026-04-09 |
| CVE-2026-39985 | LORIS Neuroimaging Platform 输入验证错误漏洞 — Loris | 4.3 | Medium | 2026-04-09 |
| CVE-2026-40037 | OpenClaw 输入验证错误漏洞 — OpenClaw | 6.5 | Medium | 2026-04-08 |
| CVE-2026-39484 | WordPress plugin Hide My WP Ghost 输入验证错误漏洞 — Hide My WP Ghost | 4.7 | Medium | 2026-04-08 |
| CVE-2026-35411 | Directus 输入验证错误漏洞 — directus | 4.3 | Medium | 2026-04-06 |
| CVE-2026-35404 | Open edX Platform 输入验证错误漏洞 — openedx-platform | 4.7 | Medium | 2026-04-06 |
| CVE-2026-35475 | WeGIA 输入验证错误漏洞 — WeGIA | 6.1AI | MediumAI | 2026-04-06 |
CWE-601(指向未可信站点的URL重定向(开放重定向)) 是常见的弱点类别,本平台收录该类弱点关联的 722 条 CVE 漏洞。