First published: Thu Apr 25 2019(Updated: )
`User/Command/ConfirmEmailHandler.php` in Flarum before 0.1.0-beta.8 mishandles invalidation of user email tokens.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Flarum Flarum | =0.1.0 | |
Flarum Flarum | =0.1.0-beta | |
Flarum Flarum | =0.1.0-beta2 | |
Flarum Flarum | =0.1.0-beta3 | |
Flarum Flarum | =0.1.0-beta4 | |
Flarum Flarum | =0.1.0-beta5 | |
Flarum Flarum | =0.1.0-beta6 | |
Flarum Flarum | =0.1.0-beta7 | |
Flarum Flarum | =0.1.0-beta7.1 | |
Flarum Flarum | =0.1.0-beta7.2 | |
composer/flarum/flarum | <0.1.0-beta.8 | 0.1.0-beta.8 |
=0.1.0 | ||
=0.1.0-beta | ||
=0.1.0-beta2 | ||
=0.1.0-beta3 | ||
=0.1.0-beta4 | ||
=0.1.0-beta5 | ||
=0.1.0-beta6 | ||
=0.1.0-beta7 | ||
=0.1.0-beta7.1 | ||
=0.1.0-beta7.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.