CVE-2026-49826Low▾ SunlitConcourse is a container-based automation system written in Go. Prior to version 8.2.3, an attacker is able to craft and send a user a URL that will redirect the user from the Concourse web server to any other site. This could be used in…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 13.8 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Aug 15.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
0.3%
Last analysed / modified upstream
Concourse is a container-based automation system written in Go. Prior to version 8.2.3, an attacker is able to craft and send a user a URL that will redirect the user from the Concourse web server to any other site. This could be used in a phishing attack to steal user's credentials. This has been fixed in 8.2.3. No known workarounds are available.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Affected packages:
github.com/concourse/concourse < 1.6.1-0.20260526150512-ac60be5f0435Patched in:
github.com/concourse/concourse 1.6.1-0.20260526150512-ac60be5f0435Connected by shared product, vendor, weakness, or advisory.
CVE-2020-5415High· 7.5GitLab auth uses full name instead of username as user ID, allowing impersonation
CVE-2022-31683Medium· 5.4Team scope authorization bypass when Post/Put request with :team_name in body, allows HTTP parameter pollution
CVE-2024-0953Medium· 6.1When a user scans a QR Code with the QR Code Scanner feature, the user is not prompted before being navigated to the page specified in the code
CVE-2026-34442Medium· 5.4FreeScout is a free help desk and shared inbox built with PHP's Laravel framework
CVE-2025-3155High· 7.4A flaw was found in Yelp
GHSA-rf68-8gjr-36q7LowNezha: OAuth2 redirect_uri Host header injection regression when dashboard_host is empty