Open Redirect Vulnerability in DivvyDrive by DivvyDrive Information Technologies Inc.
CVE-2026-6795

9.6CRITICAL

What is CVE-2026-6795?

An open redirect vulnerability exists in DivvyDrive that allows an attacker to redirect users to untrusted sites through parameter injection. This could lead to phishing attacks or the exposure of sensitive information, as users may unknowingly be directed to malicious URLs. This vulnerability affects versions from 4.8.2.9 and earlier than 4.8.3.2, emphasizing the need for timely updates to maintain system integrity.

Affected Version(s)

DivvyDrive 4.8.2.9 < 4.8.3.2

References

CVSS V3.1

Score:
9.6
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Alperen KESKİN
.