ID: VUL-007 • Severity: Low • Category: URL Redirection
The application redirects users to URLs specified in request parameters without validation, which could be exploited for phishing attacks.
Low risk - address during regular maintenance
Low severity vulnerabilities can have limited security impact
URL Redirection vulnerabilities are less commonly exploited
15% chance this is a false positive
7app.get('/redirect', (req, res) => {
8 const url = req.query.url;
9 res.redirect(url);
10});Our AI can analyze this vulnerability and suggest multiple approaches to fix it, tailored to your codebase and security requirements.