PT-2026-50603 · Cakephp+2 · Cakephp+2
CVE-2026-55590
·
Published
2026-06-17
·
Updated
2026-07-14
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
CakePHP Authentication versions prior to 2.11.1
CakePHP Authentication versions prior to 3.3.6
CakePHP Authentication versions prior to 4.1.1
Description
The
getLoginRedirect() function contains a weakness to backslash bypasses. This allows redirect targets with attacker-controlled hostnames to be processed through the redirect query string parameter.Recommendations
Update to version 2.11.1.
Update to version 3.3.6.
Update to version 4.1.1.
As a mitigation measure, add application validation to the redirect query string parameter.
Exploit
Fix
Open Redirect
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cakephp
Authentication
Cakephp/Authentication