CVE-2025-71403 | better-auth up to 1.1.19 Trusted Origins Validation callbackURL redirect (EUVD-2025-210582)
A vulnerability was found in better-auth up to 1.1.19. It has been rated as problematic. This vulnerability affects unknown code of the component Trusted Origins Validation. Performing a manipulation of the argument callbackURL results in open redirect.
This vulnerability is known as CVE-2025-71403. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is advised.