๐Ÿ” CVE Alert

CVE-2026-10837

UNKNOWN 0.0

Open redirection vulnerability in Password Manager

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Open redirection vulnerability due to insufficient validation of the X-Forwarded-Host HTTP header. An attacker could create manipulated links that, when opened by a victim, cause the victim to be redirected to domains controlled by the attacker, enabling phishing or deception attacks with limited impact on confidentiality and integrity.

CWE CWE-601
Vendor password manager
Product password manager
Published Jun 17, 2026
Stay Ahead of the Next One

Get instant alerts for password manager password manager

Be the first to know when new unknown vulnerabilities affecting password manager password manager are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Password Manager / Password Manager
0 < 08/07/2025

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
incibe.es: https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-password-manager