CVE-2025-62294 - Predictable Generation of Password Recovery Token

CVE-2025-62294 - Predictable Generation of Password Recovery Token

CVE ID : CVE-2025-62294 Published : Nov. 20, 2025, 3:43 p.m. | 42 minutes ago Description : SOPlanning is vulnerable to Predictable Generation of Password Recovery Token. Due to weak mechanism of generating recovery tokens, a malicious attacker is able to brute-force all possible values and takeover any account in reasonable amount of time. This issue was fixed in version 1.54. Severity: 8.7 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
Nov. 20, 2025