CVE-2026-6493 - Vulnerability Details

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
April 17, 2026
Last Seen
April 18, 2026

Related Threat Clusters

Recent Intelligence Reports

  • CVE-2026-6493: lukevella rallly Reset Password reset-password-form.tsx cross site scripting [LOW] CVSS 3.5 Exploit Intelligence — Recent CVEs / 23h A flaw has been found in lukevella rallly up to 4.7.4. This affects an unknown function of the file apps/web/src/app/[locale]/(auth)/reset-password/components/reset-password-form.tsx of the component Reset Password Handler. Executing a manipulation of the argument redirectTo can lead to cross site s — exploit-intel.com · April 18, 2026
  • CVE-2026-6493 - Exploits & Severity — Feedly · April 17, 2026

CVSS v3.1 Breakdown