Junglewise Threat Intelligence

CVE-2026-100523: Cotonti through 1.0.0 contains an open redirect vulnerability in message.php that base64-decodes the redirect parameter without domain valid

CVE-2026-100523 · Severity: medium · CVSS 6.1 · Published 2026-09-26