Description
Open redirect vulnerability in Drupal 6.x before 6.35 and 7.x before 7.35 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the destination parameter.
Remediation
References
Related Vulnerabilities
Dotclear Other Vulnerability (CVE-2007-1989)
WordPress Plugin WP-BlipBot Cross-Site Scripting (3.0.9)
WordPress Plugin Cardinity Payment Gateway for WooCommerce Cross-Site Scripting (3.0.6)
WordPress Plugin Mapplic Lite Server-Side Request Forgery (1.0)
WordPress Plugin WPBakery Page Builder Clipboard Cross-Site Scripting (4.5.5)