Feed/CVE-2026-53668
CVE-2026-53668CVSS 6.9

React Router: Open redirect leading to XSS

Published Jul 23, 2026·Updated Aug 3, 2026

NVD Description

Applications with open redirects could permit attacker crafted links to result in redirects to unexpected external location or XSS vectors.

Affected Packages (4)

react-routerNPM
From 7.9.6
Fixed in = 7.12.0
react-router-domNPM
From 6.30.2
Fixed in = 6.30.4
react-router-domNPM
From 6.30.2
No fix available
react-router-domNPM
From 7.9.6
Fixed in 7.13.0

CVSS Vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:L/A:N

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free