VYPR

badaso

by Uasoft

CVEs (1)

  • CVE-2025-15398LowDec 31, 2025
    risk 0.24cvss 3.7epss 0.00

    A security vulnerability has been detected in Uasoft badaso up to 2.9.7. Affected is the function forgetPassword of the file src/Controllers/BadasoAuthController.php of the component Token Handler. Such manipulation leads to weak password recovery. The attack can be executed…