CVE-2022-32741
Attacker is able to determine if the provided username exists (and it's valid) using Request New Password feature, based
Attacker is able to determine if the provided username exists (and it's valid) using Request New Password feature, based on the response time.
MEDIUM · CVSS 5.3
EPSS 0.00363
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules0
YARA rules0