CVE-2026-10837
Open redirection vulnerability in Password Manager
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Open redirection vulnerability due to insufficient validation of the X-Forwarded-Host HTTP header. An attacker could create manipulated links that, when opened by a victim, cause the victim to be redirected to domains controlled by the attacker, enabling phishing or deception attacks with limited impact on confidentiality and integrity.
| CWE | CWE-601 |
| Vendor | password manager |
| Product | password manager |
| Published | Jun 17, 2026 |
Stay Ahead of the Next One
Get instant alerts for password manager password manager
Be the first to know when new unknown vulnerabilities affecting password manager password manager are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Password Manager / Password Manager
0 < 08/07/2025