CVE-2026-56332 | Capgo up to 12.128.1 confirm-signup Endpoint confirmation_url redirect (GHSA-24q8-ghqq-m8cj / EUVD-2026-38127)
A vulnerability described as problematic has been identified in Capgo up to 12.128.1. This issue affects some unknown processing of the component confirm-signup Endpoint. The manipulation of the argument confirmation_url results in open redirect.
This vulnerability is reported as CVE-2026-56332. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More