CVE-2026-88897
8.2
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Summary
Flextype CMS through 1.0.0-alpha.3 accepts API authentication credentials through URL query string parameters in REST API routes. Attackers with access to web server, proxy, or monitoring logs can recover valid API token pairs that grant full API access.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| flextype | flextype | 0 <= 1.0.0-alpha.3 | affected |
Weaknesses
- CWE-598: Use of GET Request Method With Sensitive Query Strings
References
- https://github.com/flextype/flextype/issues/598
- https://github.com/flextype/flextype
- https://github.com/flextype/flextype/blob/v1.0.0-alpha.3/src/flextype/core/Endpoints/Api.php
- https://www.vulncheck.com/advisories/flextype-cms-through-1.0.0-alpha.3-api-token-exposure-via-query-string
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.