CVE-2026-48976 | sysadminsmedia HomeBox up to 0.25.x Notifier Repository repo_notifier.go NotifierRepository.Update ID redirect
A vulnerability labeled as problematic has been found in sysadminsmedia HomeBox up to 0.25.x. The affected element is the function NotifierRepository.Update of the file backend/internal/data/repo/repo_notifier.go of the component Notifier Repository. Such manipulation of the argument ID leads to open redirect.
This vulnerability is traded as CVE-2026-48976. The attack may be launched remotely. There is no exploit available.
The affected component should be upgraded.VulDB Recent EntriesRead More