PT-2026-51095 · Miniflux · Miniflux

CVE-2026-55185

·

Published

2026-06-19

·

Updated

2026-08-21

CVSS v4.0

5.1

Medium

VectorAV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions miniflux-v2 (affected versions not specified)
Description URL restrictions can be bypassed, leading to an open redirect. The application uses the IsRelativePath function to validate redirect URLs by requiring relative paths and prohibiting host or schema entries. However, an attacker can bypass these protections by using a backslash in the redirect url parameter at the /login endpoint. Because some browsers parse a backslash as a forward slash during redirection, a payload such as /fushuling.com is treated as a relative path by the server but redirects the user to an external domain.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability. Avoid using the redirect url parameter in the /login endpoint until the issue is resolved.

Exploit

Open Redirect

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-55185
GHSA-M999-J542-5W3R
GO-2026-5500
OPENSUSE-SU-2026:21483-1

Affected Products

Miniflux