CVE-2025-34504: Kodcloud Kodexplorer

Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.

KodExplorer 4.52 contains an open redirect vulnerability in the user login page that allows attackers to manipulate the 'link' parameter. Attackers can craft malicious URLs in the link parameter to redirect users to arbitrary external websites after authentication.

Affected products

Published 2025-12-11. Last modified 2026-10-07.