CVE-2026-107399 | Sparklemotion Mechanize up to 2.14.0 Response Follow Meta Refresh Agent#response_follow_meta_refresh privileges management

SecurityVulns

A vulnerability was found in Sparklemotion Mechanize up to 2.14.0. It has been classified as problematic. This affects the function Mechanize::HTTP::Agent#response_follow_meta_refresh of the component Response Follow Meta Refresh. Performing a manipulation results in improper privilege management.

This vulnerability is known as CVE-2026-107399. Remote exploitation of the attack is possible. No exploit is available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More