{"id":"CVE-2026-78377","title":"URL redirection to untrusted site ('open redirect') vulnerability in Yordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc","summary":"URL redirection to untrusted site ('open redirect') vulnerability in Yordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc. Library Information and Document Automation Program allows Phishing.\n…","severity":"medium","cvss":6.1,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","cwe":["CWE-601"],"vendor":"Yordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc.","product":"Library Information and Document Automation Program","affected":["library_information_and_document_automation_program >= v22.1 < v22.2"],"published":"2026-09-09","updated":"2026-09-09","sourceUpdated":"2026-09-09T15:37:49.157","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-78377","references":[{"url":"https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-1036","label":"iletisim@usom.gov.tr"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2026-09-09T12:42:18.762821Z"},"ingestedAt":"2026-09-10T22:45:58.487Z","epss":0.00185,"epssPercentile":0.08363,"slug":"CVE-2026-78377","body":"## Overview\n\nURL redirection to untrusted site ('open redirect') vulnerability in Yordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc. Library Information and Document Automation Program allows Phishing.\n\nThis issue affects Library Information and Document Automation Program: from v22.1 before v22.2.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":34,"depthScoreParts":{"impact":33.6,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}