CVE-2026-106498

CVE-2026-106498 published: Backstage is an open framework for building developer portals. Prior to 3.5.1, 3.6.2, 3.7.2, 3.8.2 and 3.9.1, the @backstage/plugin-catalog-backend package is affected by improper url validation in catalog entity placeholder resolution. An authenticated Bac...

View full NVD advisory → ← Back to CVE watch