CVE-2026-28508 | Idno up to 1.6.3 URL Unfurl Service Endpoint server-side request forgery (GHSA-fcrh-fqxh-6fx6)
A vulnerability was found in Idno up to 1.6.3 and classified as critical. This affects an unknown part of the component URL Unfurl Service Endpoint. Executing a manipulation can lead to server-side request forgery.
This vulnerability appears as CVE-2026-28508. The attack may be performed from remote. There is no available exploit.
It is suggested to upgrade the affected component.