← Voltar à pesquisa de CVEs

CVE-2026-30346

hunvreus DevPush

Descrição

An open redirect in the /api/google/authorize endpoint of hunvreus DevPush v0.3.2 allows attackers to redirect users to malicious sites via supplying a crafted URL.

CVSS 4.3EPSS 0.261%Risco 0.44
Ver fonte
Publicação
2026-04-27 17:16:42
Versões afetadas
<0.3.2
Tipo
Installed app
Vetor
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N