← العودة للجدول
CVE-2026-19965
CVE-2026-19965 — A vulnerability was determined in automad up to 2.0.0-beta.32. This vulnerabilit
📅 2026-08-17
🟢 Low 🔥 No NVD Exploit Web CVSS 3.7

📋 الوصف الكامل

A vulnerability was determined in automad up to 2.0.0-beta.32. This vulnerability affects the function requestPasswordResetToken of the file automad/src/server/Controllers/API/UserController.php of the component Password Reset Endpoint. This manipulation of the argument name-or-email causes observable response discrepancy. The attack can be initiated remotely. The attack's complexity is rated

💻 الأنظمة المتأثرة

PHP

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-19965

📡 المصدر

NVD

✅ الحلول والتخفيف

Update to v2.0.0

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ← 🔍 Valters IT ←