Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-rp7f-fhm8-9hpf: Account Takeover Through Password Reset Poisoning

Microweber v1.2.15 was discovered to allow attackers to perform an account takeover via a host header injection attack.

ghsa
#web#git

Account Takeover Through Password Reset Poisoning

Moderate severity GitHub Reviewed Published Nov 22, 2022 • Updated Nov 22, 2022

ghsa: Latest News

GHSA-mj5r-x73q-fjw6: SPEmailHandler-PHP has Potential Abuse for Sending Arbitrary Emails