Junglewise Threat Intelligence

CVE-2024-23648: Host header injection in the password reset

CVE-2024-23648 · Severity: low · CVSS 3.1 · Published 2024-01-24

Technologies: pimcore/admin-ui-classic-bundle (Packagist). Vendors: Packagist.

Executive brief

Host header injection in the password reset

Affected products

  • Packagist pimcore/admin-ui-classic-bundle

Related threats