CVE-2026-53573: core-geonetwork has an Open Redirect Bypass
GeoNetwork’s post-login redirect handling can be bypassed to redirect users to an attacker-controlled external site, even though the code attempts to restrict redirect targets to relative, in-application URLs. This affects both supported SSO login methods: OAuth2/OIDC and Keycloak.
References
- github.com/advisories/GHSA-pjp7-q6wp-97qx
- github.com/geonetwork/core-geonetwork/commit/0d74f673dfc926bde935819ed34636d789b2fecd
- github.com/geonetwork/core-geonetwork/commit/cde9b6481a29e2473b7b74479b4e3fd6843bac4e
- github.com/geonetwork/core-geonetwork/pull/9307
- github.com/geonetwork/core-geonetwork/pull/9309
- github.com/geonetwork/core-geonetwork/releases/tag/4.2.16
- github.com/geonetwork/core-geonetwork/releases/tag/4.4.11
- github.com/geonetwork/core-geonetwork/security/advisories/GHSA-pjp7-q6wp-97qx
- nvd.nist.gov/vuln/detail/CVE-2026-53573
Code Behaviors & Features
Detect and mitigate CVE-2026-53573 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →