CVE-2026-35408
Directus SSO OAuth Redirect Vulnerability.
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
Directus login pages are vulnerable to a cross-origin manipulation that can hijack the Single Sign-On (SSO) OAuth authorization flow. Attackers can exploit this to redirect users to malicious sites, causing them to unknowingly grant access to their authentication provider accounts. This impacts systems where Directus h