Skip to main content
Glama
http-req-forging-redir.cs737 B
// The following noncompliant code example is vulnerable // to open redirection as it constructs a URL with // user-controllable data. This URL is then used to redirect // the user without being first validated. An attacker can // leverage this to manipulate users into performing unwanted redirects. using System.Web; using System.Web.Mvc; public class ExampleController : Controller { [HttpGet] public void Redirect(string url) { Response.Redirect(url); } } // OWASP Top 10 2021 Category A1 - Broken Access Control // OWASP Top 10 2017 Category A5 - Broken Access Control // MITRE, CWE-20 - Improper Input Validation // MITRE, CWE-601 - URL Redirection to Untrusted Site ('Open Redirect')

Latest Blog Posts

MCP directory API

We provide all the information about MCP servers via our MCP API.

curl -X GET 'https://glama.ai/api/mcp/v1/servers/michoo/security_mcp'

If you have feedback or need assistance with the MCP directory API, please join our Discord server