CVE-2026-44506 | Medplum up to 5.1.6 OAuth2 Registration /oauth2/register redirect_uri information disclosure

SecurityVulns

A vulnerability identified as problematic has been detected in Medplum up to 5.1.6. Affected by this issue is some unknown functionality of the file /oauth2/register of the component OAuth2 Registration. This manipulation of the argument redirect_uri causes information disclosure.

This vulnerability is registered as CVE-2026-44506. Remote exploitation of the attack is possible. No exploit is available.

You should upgrade the affected component.VulDB Recent EntriesRead More