Endpoint UnvalidatedRedirect

Unvalidated redirects occur when an application redirects a user to a destination URL specified by a user supplied parameter that is not validated. Such vulnerabilities can be used to facilitate phishing attacks.

IndexedPublic repositoryHighHigh confidenceVerifiedMITscala
greprules fetch gitlab-sast-scala-endpoint-rule-unvalidatedredirect --engine opengrep

Description

Unvalidated redirects occur when an application redirects a user to a destination URL specified by a user supplied parameter that is not validated. Such vulnerabilities can be used to facilitate phishing attacks.

Detection target

Not provided

Recommended fix

Not provided

False-positive notes

Not provided

Community feedback

Sign in to report false positives, mark this rule useful, or suggest metadata improvements.