Drupal URL Redirection to Untrusted Site (Open Redirect) Vulnerability - CVE-2015-2750
Open redirect vulnerability in URL-related API functions in Drupal 6.x before 6.35 and 7.x before 7.35 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via vectors involving the quot//quot initial sequence.