CVE-2026-18266Disclosure

LOWCVSS 5.4 · MEDIUM

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

Dify AI Workflow oauth_redirect_url Open Redirect Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Dify. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the OAuth flow handling in the AppInitializer component. An attacker can force a redirection to a site that serves malicious content. An attacker can leverage this vulnerability to disclose information in the context of the application. Was ZDI-CAN-29196.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-601

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 7 mentions across 7 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 7 signals
  • Disclosure: 6 classified signals
  • Peaked 6d ago at 1 mentions (2026-08-06); latest day: 1
  • 7 total mentions across 7 days

Deep dive

Activity timeline7 mentions / 7d
00111Mentions · 2026-08-06: 1Mentions · 2026-08-07: 1Mentions · 2026-08-10: 1Mentions · 2026-08-13: 1Mentions · 2026-08-14: 1Mentions · 2026-08-18: 1Mentions · 2026-08-20: 1PoC Mentioned / Linked · 2026-08-10: 1Patch / Workaround · 2026-08-13: 1Technical Details · 2026-08-06: 1Technical Details · 2026-08-07: 1Technical Details · 2026-08-10: 1Technical Details · 2026-08-13: 1Technical Details · 2026-08-14: 1Technical Details · 2026-08-18: 1Technical Details · 2026-08-20: 108-0608-0708-1008-1308-1408-1808-20
Signal classification2 categories
Disclosure
685.7%
Patch
114.3%
Referenced assets1 URL
By indicator
Classification over time
DateTotalLabels
2026-08-061
Disclosure1
2026-08-071
Disclosure1
2026-08-101
Disclosure1
2026-08-131
Patch1
2026-08-141
Disclosure1
2026-08-181
Disclosure1
2026-08-201
Disclosure1
Full discourse7 posts
  • TrendAI™ Research@trendai_RSRCH
    Disclosure

    A crafted link could send a freshly signed-in Dify session, token included, to an attacker's domain. TrendAI™ Research rated the post-login redirect flaw (CVE-2026-18266) 5.4 on the Common Vulnerability Scoring System (CVSS). Get the breakdown: https://research.trendmicro.com/4hepRT9

    Post summary

    TrendAI Research publicly disclosed CVE-2026-18266, a post-login redirect flaw rated 5.4 on CVSS, and provided a link for detailed information.

    00040830
    51.4K followersView on X
  • TrendAI™ Research@trendai_RSRCH
    Disclosure

    TrendAI™ Research found Dify's post-login flow used an unfiltered URL parameter as its redirect target, letting a crafted link send a signed-in session, token included, to an attacker's domain (CVE-2026-18266). Read our research: https://research.trendmicro.com/4hepRT9

    Post summary

    TrendAI Research disclosed a post‑login redirect flaw in Dify (CVE‑2026‑18266) that permits an attacker to capture signed‑in session tokens via crafted URLs. The report outlines the vulnerability mechanism but does not provide a patch or exploit code.

    00001579
    51.5K followersView on X
  • TrendAI™ Research@trendai_RSRCH
    Disclosure

    TrendAI™ Research found Dify's post-login flow used an unfiltered URL parameter as its redirect target, letting a crafted link send a signed-in session, token included, to an attacker's domain (CVE-2026-18266). Read our research: https://research.trendmicro.com/4hepRT9

    Post summary

    TrendAI reports the discovery of CVE-2026-18266, an unfiltered redirect flaw in Dify’s post-login flow that can leak session tokens via a crafted link. No evidence of active exploitation or patching is mentioned.

    01000886
    51.5K followersView on X
  • TrendAI™ Research@trendai_RSRCH
    Disclosure

    TrendAI™ Research found Dify's post-login flow used an unfiltered URL parameter as its redirect target, letting a crafted link send a signed-in session, token included, to an attacker's domain (CVE-2026-18266). Read our research: https://research.trendmicro.com/4hepRT9

    Post summary

    TrendAI Research discloses a redirect-based session token theft vulnerability (CVE-2026-18266) in Dify’s post‑login flow, enabling attackers to capture signed‑in sessions; the linked research provides technical details.

    00010819
    51.5K followersView on X
  • TrendAI™ Research@trendai_RSRCH
    Disclosure

    TrendAI™ Research found Dify's post-login flow used an unfiltered URL parameter as its redirect target, letting a crafted link send a signed-in session, token included, to an attacker's domain (CVE-2026-18266). Read our research: https://research.trendmicro.com/4hepRT9

    Post summary

    TrendAI Research disclosed a redirect-based session hijacking vulnerability (CVE-2026-18266) in Dify’s post‑login flow that lets attackers capture signed‑in session tokens via crafted links, with no mention of active exploitation, patches, or PoC code.

    00000477
    51.5K followersView on X
  • TrendAI™ Research@trendai_RSRCH
    Disclosure

    TrendAI™ Research found Dify's post-login flow used an unfiltered URL parameter as its redirect target, letting a crafted link send a signed-in session, token included, to an attacker's domain (CVE-2026-18266). Read our research: https://research.trendmicro.com/4hepRT9

    Post summary

    TrendAI research discloses a post‑login redirect flaw in Dify (CVE‑2026‑18266) that allows attackers to hijack session tokens via crafted URLs.

    00000528
    51.5K followersView on X
  • TrendAI™ Research@trendai_RSRCH
    Patch

    Four months passed between TrendAI™ Research's March report of an open redirect in Dify's post-login flow and Dify's July fix (CVE-2026-18266). Running Dify? Upgrade to v1.16.0 and check your redirect logs. Dive into the research: https://research.trendmicro.com/4hepRT9

    Post summary

    The post details that Dify has addressed an open‑redirect vulnerability (CVE‑2026‑18266) by releasing a patch; users are advised to upgrade to v1.16.0 and review redirect logs, with a link to the research for more information.

    00000587
    51.5K followersView on X

Explore more