CVE-2026-54461 | HabitRPG Habitica up to 5.48.1 members incorrect regex
A vulnerability, which was classified as problematic, has been found in HabitRPG Habitica up to 5.48.1. This affects an unknown part of the file /api/v3/groups/:groupId/members. The manipulation leads to incorrect regular expression.
This vulnerability is uniquely identified as CVE-2026-54461. The attack is possible to be carried out remotely. No exploit exists.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More