Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-hmj5-jm8h-h9fh | Kiwi TCMS has an Open Redirect via unvalidated next parameter in account confirmation endpoint |
Tue, 15 Sep 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Kiwi TCMS is an open source test management system. Prior to 16.1, the account confirmation endpoint accepted an unvalidated next parameter, allowing an unauthenticated attacker to create a URL on a trusted Kiwi TCMS hostname that redirects a victim to an arbitrary external domain. The trusted origin can support credential-harvesting pages, bypass email security filters and link-reputation checks that allowlist the organization's domain, or deliver malware through a convincing account-confirmation lure. This issue is fixed in version 16.1. | |
| Title | Kiwi TCMS: Open Redirect via unvalidated next parameter in account confirmation endpoint | |
| Weaknesses | CWE-601 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-09-15T15:34:26.102Z
Reserved: 2026-06-15T23:07:33.232Z
Link: CVE-2026-54724
No data.
Status : Received
Published: 2026-09-15T16:17:14.417
Modified: 2026-09-15T16:17:14.417
Link: CVE-2026-54724
No data.
OpenCVE Enrichment
No data.
Github GHSA