CVE-2026-105127

CVE-2026-105127 published: LaraDashboard 1.4.2 before 1.4.8 applies advanced email validation to unauthenticated forgot-password and reset-password requests, triggering DNS lookups and paid AbstractAPI verification calls. Unauthenticated attackers can submit arbitrary addresses to ex...

View full NVD advisory → ← Back to CVE watch