CVE-2015-8033: Textpattern

Medium severity, CVSS 5.3. EPSS: 0.8% chance of exploitation in the next 30 days.

In Textpattern 4.5.7, the password-reset feature does not securely tether a hash to a user account.

Affected products

Published 2020-08-14. Last modified 2026-06-17.