Vulnerability Description
action/cookie.php in ecrire in SPIP before 4.4.15 is prone to an open redirect vulnerability.
CVSS Score
3.5
LOW
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:N
Related Weaknesses (CWE)
References
- https://blog.spip.net/Mise-a-jour-de-securite-sortie-de-SPIP-4-4-15.html?lang=fr
- https://git.spip.net/spip/ecrire/-/commit/a22cb8a56f1e37ff3854b73ff3f66aa3df4707
- https://git.spip.net/spip/spip/-/commit/75629034697ab52a963a340afd10930407e1cd55
FAQ
What is CVE-2026-48832?
CVE-2026-48832 is a vulnerability with a CVSS score of 3.5 (LOW). action/cookie.php in ecrire in SPIP before 4.4.15 is prone to an open redirect vulnerability.
How severe is CVE-2026-48832?
CVE-2026-48832 has been rated LOW with a CVSS base score of 3.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-48832?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.