CVE-2024-42850: Silverpeas

Critical severity, CVSS 9.8. EPSS: 1.4% chance of exploitation in the next 30 days.

An issue in the password change function of Silverpeas v6.4.2 and lower allows for the bypassing of password complexity requirements.

Affected products

Published 2024-08-16. Last modified 2026-07-05.