MEDIUM 4.7 NVD

CVE-2026-3096

The product's web portals allow external links to be opened in a new browser tab. In certain configurations, the originating window retains access to the newly

The product's web portals allow external links to be opened in a new browser tab. In certain configurations, the originating window retains access to the newly opened page, allowing interaction between the two browser contexts when navigating to external destinations. This vulnerability could allow an attacker to manipulate the original trusted application window after a user clicks a malicious external link. This manipulation can lead to users being redirected to phishing pages, enabling credential theft, or facilitating other unauthorized actions within the context of the trusted site.

References

Published: 2026-09-10 · Source: NVD · Feed updated: 2026-09-12
This medium severity vulnerability with a CVSS score of 4.7 was published on 2026-09-10 via NVD.
vulnfeed aggregates 12842 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.