CVE-2026-26895
EUVD-2026-1836602.04.2026, 17:16
User enumeration vulnerability in /pwreset.php in osTicket v1.18.2 allows remote attackers to enumerate valid usernames registered in the platform.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| enhancesoft | osticket | 𝑥 < 1.18.3 |
𝑥
= Vulnerable software versions