CVE-2025-34504: Kodcloud Kodexplorer
Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.
KodExplorer 4.52 contains an open redirect vulnerability in the user login page that allows attackers to manipulate the 'link' parameter. Attackers can craft malicious URLs in the link parameter to redirect users to arbitrary external websites after authentication.
Affected products
- Kodcloud Kodexplorer: version 4.52 only
Published 2025-12-11. Last modified 2026-10-07.