PT-2026-95579 · Sysreptor · Sysreptor

CVE-2026-81179

·

Published

2026-09-18

·

Updated

2026-09-18

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions SysReptor versions prior to 2026.58
Description Installations that enable password reset by email and configure ALLOWED HOSTS with a wildcard accept an attacker-controlled Host header during the generation of password reset links. An unauthenticated attacker can request a reset email containing a link that points to a system under their control. If a victim follows this link, the reset token is disclosed, enabling the attacker to reset the victim's password and take over the account. This exploitation requires a configured email gateway and the victim's email address, although some reverse proxy configurations may block the hostile Host header.
Recommendations Update to version 2026.58.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-81179
GHSA-9X2R-5PFF-8W6C

Affected Products

Sysreptor