Pushing Left, Like a Boss, Part 5.6 Redirects and Forwards
This series, and my blog, has moved! Check it out!
The previous article in this series was Part 5.5 — File Uploads.
Recently removed from the OWASP Top Ten, unvalidated redirects and forwards are a sub-set of the problem of poor input validation. If you properly validate all input, including input in the address bar and/or obtained from the user, you will not have this problem.
data:image/s3,"s3://crabby-images/97590/97590f2ee9a9004a17b625fd1505c5ca5e22309f" alt=""
Below is a rehash of input validation, from the viewpoint of using redirects and forwards.