CVE-2026-45701 – Sulu: Weak Cryptographical usage for API Key generation and Reset Tokens

CVE ID :CVE-2026-45701

Published : June 1, 2026, 5:17 p.m. | 1 hour, 15 minutes ago

Description :Sulu is an open-source PHP content management system based on the Symfony framework. Prior to versions 2.6.23 and 3.0.6, the password reset tokenand API key generation uses a weak cryptographical hash algorithm. This issue has been patched in versions 2.6.23 and 3.0.6.

Severity: 6.9 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more… 

نوشته های مشابه