Lucene search

K
osvGoogleOSV:GHSA-J27G-R58Q-624W
HistoryMay 17, 2022 - 2:46 a.m.

Craft CMS subject to URL forgery

2022-05-1702:46:10
Google
osv.dev
5
craft cms
url forgery
vulnerability

AI Score

6.8

Confidence

High

EPSS

0.001

Percentile

39.3%

Craft CMS before 2.6.2976 does not prevent modification of the URL in a forgot-password email message.

AI Score

6.8

Confidence

High

EPSS

0.001

Percentile

39.3%

Related for OSV:GHSA-J27G-R58Q-624W