CVE-2026-66885 | Livebook-dev Livebook up to 0.18.6/0.19.8 OAuth Callback livebook_teams.ex Livebook.ZTA.LivebookTeams.handle_request code cross-site request forgery
A vulnerability was found in Livebook-dev Livebook up to 0.18.6/0.19.8. It has been declared as problematic. This impacts the function Livebook.ZTA.LivebookTeams.handle_request of the file lib/livebook/zta/livebook_teams.ex of the component OAuth Callback Handler. The manipulation of the argument code results in cross-site request forgery.
This vulnerability is identified as CVE-2026-66885. The attack can be executed remotely. There is not any exploit available.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More