MEDIUM
getprobo
CVE published 2026-08-13
CVE-2026-49820
CVE-2026-49820 is an open-redirect vulnerability in Probo, a self-hostable governance, risk, and compliance (GRC) platform. The vulnerability allows an attacker to craft a URL that appears to originate from a trusted Probo domain but redirects victims to an external domain, enabling open-redirect phishing attacks. This issue arises from the `saferedirect` package's incomplete validation of relative paths, [truncated]