CVE-2026-35474 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

WeGIA is a Web manager for charitable institutions. Prior to 3.6.9, open redirect has been found in WeGIA webapp. The redirect parameter is taken directly from…
Medium CVSS: 5.1

CVE-2026-35474

WeGIA is a Web manager for charitable institutions. Prior to 3.6.9, open redirect has been found in WeGIA webapp. The redirect parameter is taken directly from $_GET with no URL validation or whitelist check, then used verbatim in a header("Location: ...") call. This vulnerability is fixed in 3.6.9.
Vendor
-
Product
-
CWE
CWE-601
Yayın Tarihi
2026-04-06 22:16:24
Güncelleme
2026-04-06 22:16:24
Source Identifier
security-advisories@github.com
KEV Date Added
-

Kategoriler

Referanslar