CVE-2026-30655
EUVD-2026-1489124.03.2026, 15:16
SQL injection in Solicitante::resetaSenha() in esiclivre/esiclivre v0.2.2 and earlier allows unauthenticated remote attackers to gain unauthorized access to sensitive information via the cpfcnpj parameter in /reset/index.php
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| esiclivre | esiclivre | 𝑥 ≤ 0.2.2 |
𝑥
= Vulnerable software versions