CVE-2026-40465: Nokia Nsp

Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.

NSP is vulnerable to an open redirect due to insufficient server-side validation of the URL (or redirect) parameter.

Affected products

  • Nokia Nsp: version 23.11 only; version 24.4 only; version 24.8 only; version 24.11 only; version 25.4 only; version 25.8 only; …

Published 2026-08-31. Last modified 2026-09-03.