CVE-2026-12049 | pgAdmin 4 up to 9.15 /mfa/validate Next redirect (Issue 10028)

SecurityVulns

A vulnerability was found in pgAdmin 4 up to 9.15. It has been rated as problematic. This vulnerability affects unknown code of the file /mfa/validate. Performing a manipulation of the argument Next results in open redirect.

This vulnerability is cataloged as CVE-2026-12049. It is possible to initiate the attack remotely. There is no exploit available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More