CVE-2026-58196 | Stacklok ToolHive up to 0.30.x Authentication Discovery handler.go remote.Handler.Authenticate redirect
A vulnerability was found in Stacklok ToolHive up to 0.30.x. It has been rated as problematic. The affected element is the function remote.Handler.Authenticate of the file pkg/auth/remote/handler.go of the component Authentication Discovery. Performing a manipulation results in open redirect.
This vulnerability is known as CVE-2026-58196. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is advised.VulDB Recent EntriesRead More