Cwe-601 - Open Redirect is a cwe tracked by ThreatCluster, appearing in 17 threat clusters built from 20 intelligence report mentions.
Cwe-601 - Open Redirect is a cwe tracked across 17 threat clusters and 20 intelligence report mentions on ThreatCluster. First observed April 20, 2026; most recent activity August 2, 2026.
A critical vulnerability identified as CVE-2026-54588 affects Poweradmin, a web-based DNS administration tool for PowerDNS server. The flaw allows unauthenticated attackers to exploit the HTTP_HOST request header to…
A critical remote code execution (RCE) vulnerability, CVE-2026-53435, has been identified in Jenkins, affecting versions 2.567 and earlier, including LTS 2.555.2 and earlier. This flaw allows attackers to exploit…
Fluentd v1.19.3 addresses multiple vulnerabilities, including a critical RCE flaw tracked as CVE-2026-44024. These vulnerabilities can allow unauthenticated remote attackers to execute arbitrary code, access sensitive…
pgAdmin 4 version 9.16 was released to patch seven vulnerabilities, including critical issues tracked as CVE-2026-12044 to CVE-2026-12050. These vulnerabilities could allow attackers to execute arbitrary commands, gain…
SAP has released security updates addressing 16 vulnerabilities, including three critical flaws in its NetWeaver, Commerce Cloud, and AppRouter products. The most severe, CVE-2026-44747, allows authenticated attackers…
On June 9, 2026, Microsoft released its largest Patch Tuesday update, addressing 206 vulnerabilities, including three zero-day flaws. Among the critical vulnerabilities, 32 were rated as critical, with 28 classified as…
CVE-2026-16117 was published on July 18, 2026, detailing a critical vulnerability in @fastify/http-proxy versions up to 11.5.0. The flaw allows attackers to bypass request prefix rewrites when the prefix is URL-encoded,…
The InstallFix campaign targets users by creating fake installation pages for Anthropic's Claude AI, tricking them into executing malware. This sophisticated social engineering tactic exploits the growing reliance on AI…
A series of vulnerabilities were identified in the follow-redirects module affecting Ubuntu 18.04 LTS, 20.04 LTS, and 22.04 LTS. These vulnerabilities include improper handling of sensitive user information during…
QNAP has released security advisory QSA-26-10 to address 14 vulnerabilities in its NAS and surveillance platforms, including QTS, QuTS hero, QuTS cloud, and QVP (QVR Pro appliances). These vulnerabilities, disclosed on…
Cwe-601 - Open Redirect is a cwe tracked by ThreatCluster, appearing in 17 threat clusters built from 20 intelligence report mentions.
The most recent intelligence report mentioning Cwe-601 - Open Redirect on ThreatCluster is dated August 2, 2026. Activity was first observed April 20, 2026, giving a tracked span from then to August 2, 2026.
Across ThreatCluster reporting, Cwe-601 - Open Redirect most frequently co-occurs with Brute Force, Code Injection, Command Injection, Data Breach, DDoS, among 12 tracked related entities.
The most significant recent cluster is “Critical Host Header Injection Vulnerability in Poweradmin (CVE-2026-54588)” (2 articles · Updated June 25, 2026). Cwe-601 - Open Redirect appears across 17 threat clusters in total, listed above with sources.
Cwe-601 - Open Redirect appears in 20 intelligence report mentions across 17 deduplicated threat clusters, aggregated from 17,000+ monitored sources.