CVE-2026-43926 | FOSSBilling up to 0.7.x Password Reset Confirmation Endpoint reset-password-confirm response discrepancy
A vulnerability labeled as problematic has been found in FOSSBilling up to 0.7.x. This impacts an unknown function of the file /client/reset-password-confirm of the component Password Reset Confirmation Endpoint. The manipulation results in observable response discrepancy.
This vulnerability is reported as CVE-2026-43926. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.