Executive brief
Silverstripe Framework user enumeration via timing attack on login and password reset forms
Affected products
- Packagist silverstripe/framework
Junglewise Threat Intelligence
Severity: low · CVSS 3.1 · Published 2025-04-10
Technologies: silverstripe/framework (Packagist). Vendors: Packagist.
Silverstripe Framework user enumeration via timing attack on login and password reset forms