What is CVE-2026-46688?
This is an open redirect vulnerability in the PHP-based Meeting Room Booking System (MRBS). An unauthenticated attacker can craft a URL that redirects users to an arbitrary, potentially malicious location specified in the query. Affects versions prior to 1.12.2; immediate update is recommended.
Azərbaycanca: Bu, PHP əsaslı Meeting Room Booking System (MRBS) tətbiqində aşkarlanmış açıq yönləndirmə (open redirect) zəifliyidir. Təsdiqlənməmiş istifadəçi xüsusi hazırlanmış sorğu ilə istifadəçini zərərli saytlara yönləndirə bilər. 1.12.2 versiyasına qədər təsir edir, dərhal yeniləmə tövsiyə olunur.
FAQ2
Which PHP application has this open redirect vulnerability been found in?
The Meeting Room Booking System (MRBS).
What is the affected version range for CVE-2026-46688?
MRBS versions prior to 1.12.2 are affected.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.