Medium severity5.3NVD Advisory· Published Aug 1, 2022· Updated Jul 9, 2026
CVE-2022-34530
CVE-2022-34530
Description
An issue in the login and reset password functionality of Backdrop CMS v1.22.0 allows attackers to enumerate usernames via password reset requests and distinct responses returned based on usernames.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<=1.22.0+ 1 more
- (no CPE)range: <=1.22.0
- cpe:2.3:a:backdropcms:backdrop_cms:*:*:*:*:*:*:*:*range: <=1.22.0
- Backdrop/CMSdescription
Patches
Vulnerability mechanics
References
1- github.com/Accenture/AARO-Bugs/blob/master/AARO-CVE-List.mdnvdThird Party Advisory
News mentions
0No linked articles in our index yet.