CVE-2026-88897
Flextype CMS through 1.0.0-alpha.3 API Token Exposure via Query String
CVSS Score
5.9
EPSS Score
0.0%
EPSS Percentile
0th
Flextype CMS through 1.0.0-alpha.3 accepts API authentication credentials through URL query string parameters in REST API routes. Attackers with access to web server, proxy, or monitoring logs can recover valid API token pairs that grant full API access.
| CWE | CWE-598 |
| Vendor | flextype |
| Product | flextype |
| Published | Sep 10, 2026 |
| Last Updated | Sep 15, 2026 |
Stay Ahead of the Next One
Get instant alerts for flextype flextype
Be the first to know when new medium vulnerabilities affecting flextype flextype are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
Affected Versions
flextype / flextype
0 โค 1.0.0-alpha.3
References
github.com: https://github.com/flextype/flextype/issues/598 github.com: https://github.com/flextype/flextype github.com: https://github.com/flextype/flextype/blob/v1.0.0-alpha.3/src/flextype/core/Endpoints/Api.php vulncheck.com: https://www.vulncheck.com/advisories/flextype-cms-through-1.0.0-alpha.3-api-token-exposure-via-query-string
Credits
Ali Khafagy