← Back to feed
Vulnerabilities & PatchesEmerging1 sourceAug 15, 2026 · 13:25via CVE Program

cve-2026-15689

Brief

Dancer2::Plugin::Auth::Extensible versions through 0.713 for Perl allow password reset link poisoning via the request Host header in _default_email_password_reset and _default_welcome_send

Read more on CVE Program