CVE-2026-76838 | HiEventsDev Hi.Events 1.7.1-beta/1.11.0 NoInternalUrlRule NoInternalUrlRule.php gethostbyname redirect (EUVD-2026-65010)

SecurityVulns

A vulnerability, which was classified as problematic, was found in HiEventsDev Hi.Events 1.7.1-beta/1.11.0. The affected element is the function gethostbyname of the file backend/app/Validators/Rules/NoInternalUrlRule.php of the component NoInternalUrlRule. Executing a manipulation can lead to open redirect.

The identification of this vulnerability is CVE-2026-76838. The attack may be launched remotely. There is no exploit available.

You should upgrade the affected component.VulDB Recent EntriesRead More