VYPR

djangoSIGE

by DjangoSIGE

CVEs (1)

  • CVE-2026-64822MedJul 21, 2026
    risk 0.00cvss 5.3epss 0.00

    djangoSIGE through 1.10 (commit a6fe7e8) contains a user enumeration vulnerability in ForgotPasswordView within djangosige/apps/login/views.py that allows unauthenticated attackers to identify valid accounts by observing distinct error messages returned by the password reset…