An open redirect in Ascertia SigningHub User v10.0 allows attackers to redirect users to a malicious site via a crafted URL.
References
| Link | Resource |
|---|---|
| https://linkedin.com/in/thakur-nikhil | Not Applicable |
| https://medium.com/@rajput.thakur/malicious-open-redirection-cve-2025-61166-bf5d708cd241 | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
10 Apr 2026, 18:40
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:ascertia:signinghub:10.0:*:*:*:*:*:*:* cpe:2.3:a:ascertia:signinghub:8.6.8:*:*:*:*:*:*:* |
|
| References | () https://linkedin.com/in/thakur-nikhil - Not Applicable | |
| References | () https://medium.com/@rajput.thakur/malicious-open-redirection-cve-2025-61166-bf5d708cd241 - Exploit, Third Party Advisory | |
| First Time |
Ascertia
Ascertia signinghub |
06 Apr 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.1 |
| CWE | CWE-601 |
06 Apr 2026, 18:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-06 18:16
Updated : 2026-04-10 18:40
NVD link : CVE-2025-61166
Mitre link : CVE-2025-61166
CVE.ORG link : CVE-2025-61166
JSON object : View
Products Affected
ascertia
- signinghub
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
