CVE-2025-40846

Vulnerability Details

Basic Information

Title CVE-2025-40846
Type cve
Published 2025-05-08T09:15:20
Last Seen 2025-05-08T09:26:10
CVSS Score 0.0 ()

CVSS v3 Details

Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact

CVE Information

CVE IDs CVE-2025-40846
CWE CWE-20, CWE-601
Bulletin Family cve

Description

Improper Input Validation, the returnUrl parameter in Account Security Settings lacks proper input validation, allowing attackers to redirect users to malicious websites (Open Redirect) andย inject JavaScript code to perform cross site scripting attack….

Impact Assessment

Base Score 0.0
Severity

๐Ÿ’ญ Join the Security Discussion

๐Ÿ”’ Your email address will not be published. Required fields are marked *

โš ๏ธ Please be respectful and constructive in your comments. Security discussions should remain professional.