CVE-2026-40465: Nokia Nsp
Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.
NSP is vulnerable to an open redirect due to insufficient server-side validation of the URL (or redirect) parameter.
Affected products
- Nokia Nsp: version 23.11 only; version 24.4 only; version 24.8 only; version 24.11 only; version 25.4 only; version 25.8 only; …
Published 2026-08-31. Last modified 2026-09-03.