
CVE-2026-24768: The 'Continue' to Nowhere: Breaking NocoDB's Login Flow An Open Redirect vulnerability in NocoDB allows attackers to hijack the post-login redirection flow. By manipulating the 'continueAfterSignIn' parameter, threat actors can seamles... https://cvereports.com/reports/CVE-2026-24768
Post summary
The report discloses an open‑redirect flaw in NocoDB’s login flow that enables attackers to hijack post‑login redirection, but offers no evidence of exploitation, PoC, or patch availability.
