CVE-2026-48902

EUVD-2026-31878
The password and username reset features created plain http links for https connections if the "Force SSL" flag wasn't explicitly set.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
UNKNOWN
---
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown