B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

CVE-2026-47181 - PenguinMod-BackendApi: NoSQL Injection in Password Reset Endpoint Allows Account Takeover

CVE ID :CVE-2026-47181 Published : June 11, 2026, 7:16 p.m. | 1 hour, 48 minutes ago Description :PenguinMod-BackendApi is the backend api for penguinmod. Prior to version 1.0.0, a NoSQL injection vulnerability in the password reset endpoint allows any authenticated user to change the...

Original-Artikel öffnen Zurück zur Übersicht