A vulnerability classified as problematic has been found in Saltcorn up to 1.4.5/1.5.5/1.6.0-beta.4. This affects the function
is_relative_url. Performing a manipulation results in open redirect.
This vulnerability is identified as CVE-2026-42259. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.