Vulnerability Description
Halo through 2.26.1 contains an open redirect vulnerability in the anonymous thumbnail endpoint that fails to validate the uri query parameter. Attackers can craft malicious links on the trusted Halo domain that redirect visitors to arbitrary external sites, enabling phishing attacks and abuse of redirect-based trust relationships.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://github.com/halo-dev/halo
- https://github.com/halo-dev/halo/blob/v2.26.1/application/src/main/java/run/halo
- https://github.com/halo-dev/halo/blob/v2.26.1/application/src/main/resources/ext
- https://github.com/halo-dev/halo/issues/10247
- https://www.vulncheck.com/advisories/halo-through-2.26.1-open-redirect-via-unval
- https://github.com/halo-dev/halo/issues/10247
FAQ
What is CVE-2026-91772?
CVE-2026-91772 is a vulnerability with a CVSS score of 6.1 (MEDIUM). Halo through 2.26.1 contains an open redirect vulnerability in the anonymous thumbnail endpoint that fails to validate the uri query parameter. Attackers can craft malicious links on the trusted Halo ...
How severe is CVE-2026-91772?
CVE-2026-91772 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-91772?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.