CVE-2026-45701 – Sulu: Weak Cryptographical usage for API Key generation and Reset Tokens
CVE ID :CVE-2026-45701
Published : June 1, 2026, 5:17 p.m. | 1 hour, 15 minutes ago
Description :Sulu is an open-source PHP content management system based on the Symfony framework. Prior to versions 2.6.23 and 3.0.6, the password reset tokenand API key generation uses a weak cryptographical hash algorithm. This issue has been patched in versions 2.6.23 and 3.0.6.
Severity: 6.9 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more…