VYPR
Critical severity9.8NVD Advisory· Published Nov 18, 2025· Updated Jun 17, 2026

CVE-2025-54321

CVE-2025-54321

Description

In Ascertia SigningHub through 8.6.8, there is a lack of rate limiting on the reset password function, leading to an email bombing vulnerability. An authenticated attacker can exploit this by automating reset password requests.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Ascertia/Signinghubcpe-rescue3 versions
    (expand)+ 2 more
    • (no CPE)
    • cpe:2.3:a:ascertia:signinghub:*:*:*:*:*:*:*:*range: <=8.6.8
    • (no CPE)range: <=8.6.8

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.