An open redirect in the /api/google/authorize endpoint of hunvreus DevPush v0.3.2 allows attackers to redirect users to malicious sites via supplying a crafted URL.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 27 Apr 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An open redirect in the /api/google/authorize endpoint of hunvreus DevPush v0.3.2 allows attackers to redirect users to malicious sites via supplying a crafted URL. | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-04-27T17:51:00.999Z
Reserved: 2026-03-04T00:00:00.000Z
Link: CVE-2026-30346
No data.
Status : Deferred
Published: 2026-04-27T17:16:42.827
Modified: 2026-04-27T18:35:53.583
Link: CVE-2026-30346
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.