← Retour à la recherche de CVE

CVE-2026-30346

hunvreus DevPush

Description

An open redirect in the /api/google/authorize endpoint of hunvreus DevPush v0.3.2 allows attackers to redirect users to malicious sites via supplying a crafted URL.

CVSS 4.3EPSS 0.261%Risque 0.44
Voir la source
Publication
2026-04-27 17:16:42
Versions concernées
<0.3.2
Type
Installed app
Vecteur
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N