Ghostwire / Intelligence Feed / Coverage

CVE-2026-40168 - Postiz has Server-Side Request Forgery via Redirect Bypass in /api/public/stream

CVE Feed cybersecurity · April 10, 2026 · Original source
CVE ID :CVE-2026-40168 Published : April 10, 2026, 8:16 p.m. | 3 hours, 52 minutes ago Description :Postiz is an AI social media scheduling tool. Prior to 2.21.5, the /api/public/stream endp...

Related Vulnerabilities

Related Coverage

Threat Actors