CVE-2025-51543
Critical severity, CVSS 9.8. EPSS: 0.3% chance of exploitation in the next 30 days.
An issue was discovered in Cicool builder 3.4.4 allowing attackers to reset the administrator's password via the /administrator/auth/reset_password endpoint.
Published 2025-08-19. Last modified 2026-07-05.