CWE-640

CWE-640 · 5 records · 3 with a public proof-of-concept

Records the NVD classes under CWE-640, highest CVSS first.

  1. CRITICAL 9.3CVE-2026-9273

    The Membership Plugin – Kadence Memberships plugin for WordPress (formerly Restrict Content) is vulnerable to password reset link poisoning leading to account takeover in all versions up to, and including, 4.0.0. This is due to the legacy lost-password handler…

    AI risk analysis on Exploit-DB.ai →

  2. HIGH 8.8CVE-2026-100870public PoC

    Sylius versions before 1.12.25, 1.13.17, 1.14.20, 2.1.16, and 2.2.9 build administrator password-reset links using the request Host header without validation, allowing unauthenticated attackers to redirect reset tokens to attacker-controlled domains. Attackers…

    AI risk analysis on Exploit-DB.ai →

  3. HIGH 8.3CVE-2026-101188public PoC

    A security vulnerability has been detected in Netcore POWER13 2.0.240730.162638. This issue affects the function routerd.passwd_set of the file /ubus. Such manipulation leads to weak password recovery. The attack may be performed from remote. The exploit has b…

    AI risk analysis on Exploit-DB.ai →

  4. MEDIUM 6.8CVE-2026-93340public PoC

    Gladys Assistant before 5.1.0 contains a password reset link poisoning vulnerability that allows unauthenticated remote attackers to obtain valid password reset tokens for any account by exploiting the client-supplied origin parameter in the forgot_password en…

    AI risk analysis on Exploit-DB.ai →

  5. UNSCOREDCVE-2026-14850

    The password reset funcionality is vulnerable to unauthorized account modification due to improper validation of the user_id parameter. An attacker can manipulate this predictable numeric identifier to reset passwords for arbitrary users without proving accoun…

    AI risk analysis on Exploit-DB.ai →