CVE-2025-29993
27.03.2025, 10:15
The affected versions of PowerCMS allow HTTP header injection. This vulnerability can be leveraged to direct the affected product to send email with a tampered URL, such as password reset mail.
Awaiting analysis
This vulnerability is currently awaiting analysis.