CVE-2026-100870 | Sylius up to 2.2.8 Password Reset redirect
A vulnerability categorized as problematic has been discovered in Sylius up to 1.12.24/1.13.16/1.14.19/2.1.15/2.2.8. Affected by this vulnerability is an unknown functionality of the component Password Reset. Such manipulation leads to open redirect.
This vulnerability is traded as CVE-2026-100870. The attack may be launched remotely. There is no exploit available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More