CVE-2026-31381 - Gainsight Assist plugin information disclosure
CVE ID :CVE-2026-31381
Published : March 20, 2026, 2:16 p.m. | 45 minutes ago
Description :An attacker can extract user email addresses (PII) exposed in base64 encoding via the state parameter in the OAuth callback URL.
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : March 20, 2026, 2:16 p.m. | 45 minutes ago
Description :An attacker can extract user email addresses (PII) exposed in base64 encoding via the state parameter in the OAuth callback URL.
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...