CVE-2026-48832: Low severity Spip SPIP vulnerability
Published May 24, 2026
·Updated
action/cookie.php in ecrire in SPIP before 4.4.15 is prone to an open redirect vulnerability.
Affected Software
1 affected component
Spip SPIP<4.4.15
Event History
May 24, 2026
CVE Published
via MITRE·10:36 PM
Data Sourced
via MITRE·10:36 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-48832?
The severity of CVE-2026-48832 is rated low, with a score of 3.5.
2
What does CVE-2026-48832 affect?
CVE-2026-48832 affects the action/cookie.php file in ecrire within SPIP versions prior to 4.4.15.
3
What type of vulnerability is CVE-2026-48832?
CVE-2026-48832 is classified as an open redirect vulnerability.
4
How do I fix CVE-2026-48832?
To fix CVE-2026-48832, update your SPIP installation to version 4.4.15 or later.
5
Is CVE-2026-48832 easy to exploit?
Yes, CVE-2026-48832 can be exploited remotely with low privileges due to its open redirect nature.