CVE-2026-66414 | Leantime up to 3.6.1 Login Controller redirectUrl
A vulnerability, which was classified as problematic, has been found in Leantime up to 3.6.1. The impacted element is an unknown function of the component Login Controller. The manipulation of the argument redirectUrl leads to open redirect.
This vulnerability is referenced as CVE-2026-66414. Remote exploitation of the attack is possible. No exploit is available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More