CVE-2026-101151

CVE-2026-101151 published: Insufficient validation of request in login flow could allow a remote, unauthenticated attacker to craft a URL that, when clicked by a user, redirects the user's browser to an arbitrary external site upon completion of the authentication process.

View full NVD advisory → ← Back to CVE watch