CVE-2026-10839
EUVD-2026-3768017.06.2026, 13:19
Open redirection vulnerability in the authentication system allows an attacker to use manipulated values in the X-Forwarded-Host header to alter the URLs generated by the application. A successful exploit could redirect authenticated users to malicious sites following login procedures or interaction with the interface, resulting in limited impact on confidentiality and integrity.
Awaiting analysis
This vulnerability is currently awaiting analysis.
Common Weakness Enumeration