CVE-2026-48902
The password and username reset features created plain http links for https connections if the "Force SSL" flag wasn't explicitly set.
Faiblesse
The password and username reset features created plain http links for https connections if the "Force SSL" flag wasn't explicitly set.
Produits concernés
- joomla joomla\!
Références
Trouvez la faille avant un attaquant.
Connectez-vous avec GitHub et lancez votre premier audit en moins d'une minute. L'offre gratuite ne nécessite aucune carte bancaire.