
CVE-2026-3318 Open redirection vulnerability in the latest demo version of the Cradle eCommerce platform. The vulnerability occurs in the login form endpoint, where the ‘returnUrl’ p… https://www.cve.org/CVERecord?id=CVE-2026-3318
Post summary
CVE-2026-3318 is a disclosed open redirection vulnerability in the Cradle eCommerce login form, with the returnUrl parameter implicated.
