CVE-2022-33012: Account Takeover Through Password Reset Poisoning
Microweber v1.2.15 was discovered to allow attackers to perform an account takeover via a host header injection attack.
References
Detect and mitigate CVE-2022-33012 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →