Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-27978

Tooljet v1.6 does not properly handle missing values in the API, allowing attackers to arbitrarily reset passwords via a crafted HTTP request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 41.6%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2022-27978


Contact Us

Shodan ® - All rights reserved