CVE-2026-56332 | Capgo up to 12.128.1 confirm-signup Endpoint confirmation_url redirect (GHSA-24q8-ghqq-m8cj / EUVD-2026-38127)

SecurityVulns

A vulnerability described as problematic has been identified in Capgo up to 12.128.1. This issue affects some unknown processing of the component confirm-signup Endpoint. The manipulation of the argument confirmation_url results in open redirect.

This vulnerability is reported as CVE-2026-56332. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More