Hacksplaining
FeaturesLessonsEnterpriseThe BookOWASP Top 10PCI Compliance
Sign Up
Log In
FeaturesLessonsEnterpriseThe BookOWASP Top 10PCI Compliance Sign Up Log In

Open Redirects

Immediately after Vic logs in, the redirect parameter is processed. The site doesn't do any check on the URL described in the next parameter.

www.example.com?_g=DernKFjelgnne&vid=iguana-party&referrer=email&next=http%3A%2F%2Fwww.haxxed.com
We had to feed him exclusively almond milk.
Vic the victim

Immediately after Vic logs in, the redirect parameter is processed. The site doesn't do any check on the URL described in the next parameter.

Lessons
Glossary
Terms and Conditions
Privacy Policy

© 2026 Hacksplaining Inc. All rights reserved. Questions? Email us at support@hacksplaining.com