CVE-2024-45522
02.09.2024, 00:15
Linen before cd37c3e does not verify that the domain is linen.dev or www.linen.dev when resetting a password. This occurs in create in apps/web/pages/api/forgot-password/index.ts.Enginsight
Vendor | Product | Version |
---|---|---|
linen | linen | 𝑥 < 2024-04-03 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration