CVE-2026-94107 | NivoCart up to 2.4.0 Password Reset forgotten.php mt_rand password recovery
A vulnerability was found in NivoCart up to 2.4.0 and classified as critical. Affected by this vulnerability is the function mt_rand of the file forgotten.php of the component Password Reset. Executing a manipulation can lead to weak password recovery.
The identification of this vulnerability is CVE-2026-94107. The attack may be launched remotely. There is no exploit available.VulDB Recent EntriesRead More