CVE-2025-43916 | Sonos api.sonos.com up to 2025-04-21 RFC 6819 /login/v3/oauth redirect_uri non-canonical url paths for authorization decisions (EUVD-2025-12378)
A vulnerability has been found in Sonos api.sonos.com up to 2025-04-21 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /login/v3/oauth of the component RFC 6819 Handler. The manipulation of the argument redirect_uri leads to use of non-canonical url paths for authorization decisions.
This vulnerability is known as CVE-2025-43916. The attack can be launched remotely. There is no exploit available.
This product is available as a managed service. Users are not able to maintain vulnerability countermeasures themselves.