This issue affects Emergency Password Reset: from n/a through 8.0.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress Emergency Password Reset plugin to the latest available version (at least 9.0).
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 21 Jun 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Andy Moyle
Andy Moyle emergency Password Reset Wordpress Wordpress wordpress |
|
| Vendors & Products |
Andy Moyle
Andy Moyle emergency Password Reset Wordpress Wordpress wordpress |
Thu, 18 Jun 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 17 Jun 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cross-Site request forgery (CSRF) vulnerability in Andy Moyle Emergency Password Reset allows Cross Site Request Forgery. This issue affects Emergency Password Reset: from n/a through 8.0. | |
| Title | WordPress Emergency Password Reset plugin <= 8.0 - Cross Site Request Forgery (CSRF) vulnerability | |
| Weaknesses | CWE-352 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-06-17T15:30:36.673Z
Reserved: 2024-05-17T10:08:10.961Z
Link: CVE-2024-35648
Updated: 2026-06-17T15:30:28.417Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-20T23:03:26Z