A vulnerability classified as problematic has been found in SPIP up to 4.4.14. Impacted is an unknown function of the file action/cookie.php of the component ecrire. Performing a manipulation results in open redirect.

This vulnerability is cataloged as CVE-2026-48832. It is possible to initiate the attack remotely. There is no exploit available.

It is recommended to upgrade the affected component.