Vulnerabilities (CVE)

Filtered by vendor Joturl Subscribe
Filtered by product Joturl
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-24948 1 Joturl 1 Joturl 2025-04-22 N/A 6.5 MEDIUM
In JotUrl 2.0, passwords are sent via HTTP GET-type requests, potentially exposing credentials to eavesdropping or insecure records.
CVE-2025-24949 1 Joturl 1 Joturl 2025-04-22 N/A 6.5 MEDIUM
In JotUrl 2.0, is possible to bypass security requirements during the password change process.