CVE-2025-55138
Awaiting Analysis Awaiting Analysis - Queue
BaseFortify

Publication date: 2025-08-07

Last updated on: 2025-08-07

Assigner: MITRE

Description
LinkJoin through 882f196 mishandles token ownership in password reset.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-08-07
Last Modified
2025-08-07
Generated
2026-05-27
AI Q&A
2025-08-07
EPSS Evaluated
2026-05-25
NVD
EUVD
Affected Vendors & Products
Currently, no data is known.
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-304 The product implements an authentication technique, but it skips a step that weakens the technique.
Attack-Flow Graph
AI Powered Q&A
How can this vulnerability impact me? :

The vulnerability can allow attackers to gain unauthorized access to user accounts by exploiting the mishandling of token ownership in the password reset functionality, potentially leading to compromised confidentiality and integrity of user data.


Can you explain this vulnerability to me?

This vulnerability in LinkJoin through 882f196 involves improper handling of token ownership during the password reset process, which can lead to unauthorized access or control over user accounts.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart