CVE-2017-1000434: Furikake Project Furikake

Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.

Wordpress plugin Furikake version 0.1.0 is vulnerable to an Open Redirect The furikake-redirect parameter on a page allows for a redirect to an attacker controlled page classes/Furigana.php: header('location:'.urldecode($_GET['furikake-redirect']));

Affected products

Published 2018-01-02. Last modified 2026-06-17.