A lack of rate limiting in the 'Forgot Password', 'Email...
High severity
Unreviewed
Published
Feb 19, 2025
to the GitHub Advisory Database
•
Updated Feb 20, 2025
Description
Published by the National Vulnerability Database
Feb 19, 2025
Published to the GitHub Advisory Database
Feb 19, 2025
Last updated
Feb 20, 2025
A lack of rate limiting in the 'Forgot Password', 'Email Settings' feature of PHPJabbers Event Booking Calendar v4.0 allows attackers to send an excessive amount of email for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.
References