Medium severity4.2NVD Advisory· Published Feb 18, 2025· Updated Jun 17, 2026
CVE-2025-26058
CVE-2025-26058
Description
Webkul QloApps v1.6.1 exposes authentication tokens in URLs during redirection. When users access the admin panel or other protected areas, the application appends sensitive authentication tokens directly to the URL.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
News mentions
0No linked articles in our index yet.