CVE-2025-55138: Latkecrszy Linkjoin

High severity, CVSS 7.4. EPSS: 0.3% chance of exploitation in the next 30 days.

LinkJoin through 882f196 mishandles token ownership in password reset.

Affected products

Published 2025-08-07. Last modified 2026-06-17.