Return to CVE list

CVE-2016-9450

7.5
Critical

CVE-2016-9450

cve@mitre.org
Modified

Description

The user password reset form in Drupal 8.x before 8.2.3 allows remote attackers to conduct cache poisoning attacks by leveraging failure to specify a correct cache context.

Exploits

No known exploits found for this CVE.

Search Exploit-DB

References