CVE-2025-27939
An attacker can change registered email addresses of other users and take over arbitrary accounts.
An attacker can change registered email addresses of other users and take over arbitrary accounts.
HIGH · CVSS 7.5
EPSS 0.00298
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0