CVE-2026-72506

Improper validation of specified hostname in VoiceTra

VoiceTraにおける接続先の制限が不適切な脆弱性

VoiceTra provided by National Institute of Information and Communications Technology (NICT) contains an incorrectly specified destination in a communication channel vulnerability. Users may be directed to a server (or service) controlled by an attacker, potentially resulting in the theft of input data or the display of incorrect results.

Disclosure Date

2026/8/13

Credit

RyotaK( https://ryotak.net )

Reference