CVE-2026-2153

Severity CVSS v4.0:
MEDIUM
Type:
CWE-601 URL Redirection to Untrusted Site ('Open Redirect')
Publication date:
08/02/2026
Last modified:
05/03/2026

Description

A vulnerability was determined in mwielgoszewski doorman up to 0.6. This issue affects the function is_safe_url of the file doorman/users/views.py. Executing a manipulation of the argument Next can lead to open redirect. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mwielgoszewski:doorman:*:*:*:*:*:*:*:* 0.6 (including)