Restructure repository: Remove OWASP categorization, organize by vulnerability type

Co-authored-by: Stalin-143 <161853795+Stalin-143@users.noreply.github.com>
This commit is contained in:
copilot-swe-agent[bot]
2026-01-04 19:01:04 +00:00
parent 274734e91a
commit ba72efbc5e
46 changed files with 341 additions and 323 deletions
+16
View File
@@ -0,0 +1,16 @@
# Open Redirect
## Description
Open redirect vulnerabilities occur when a web application accepts user-controlled input that specifies a link to an external site and uses that link in a redirect. This can be used for phishing attacks or to bypass security controls.
## Common Attack Vectors
- URL parameters (redirect, url, return, next)
- Login/logout redirect parameters
- OAuth callback URLs
- Error page redirects
## Testing Approach
Submit external URLs in redirect parameters to test if the application redirects to arbitrary external sites.
## Payloads
See `open-redirect-payloads.txt` for a comprehensive list of open redirect payloads.