CVE-2026-55185 | Miniflux up to 2.3.0 Go URL Parser internal/urllib/url.go IsRelativePath redirect_url

SecurityVulns

A vulnerability described as problematic has been identified in Miniflux up to 2.3.0. This vulnerability affects the function IsRelativePath of the file internal/urllib/url.go of the component Go URL Parser. Executing a manipulation of the argument redirect_url can lead to open redirect.

This vulnerability is registered as CVE-2026-55185. It is possible to launch the attack remotely. No exploit is available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More