Joel Vázquez Ortiz@_substrg_Disclosure
A critical vulnerability (CVE-2026-32865) in OPEXUS eComplaint and eCase is reported, identified as an insecure password reset flaw, with no further exploitation or mitigation details provided.
CVE@CVEnewDisclosure
The text announces a new information‑disclosure vulnerability (CVE‑2026‑32865) in OPEXUS eComplaint and eCASE (prior to version 10.1.0.0), where secret verification codes appear in HTTP responses during a forced password reset.
The Hacker Wire@TheHackerWireDisclosure
The tweet announces CVE‑2026‑32865 as a critical flaw where the secret verification code leaks in the HTTP response during password reset in OPEXUS eComplaint and eCASE versions before 10.1.0.0; it includes technical details but no PoC, exploit, or patch information.
CVEFind.com@CveFindComDisclosure
The post announces a critical vulnerability (CVE‑2026‑32865) in OPEXUS eComplaint & eCASE (<10.1.0.0) that leaks secret codes in HTTP responses, allowing attackers to bypass password‑reset security questions, yet it offers no PoC, exploit, or patch details.
0day Signal@0dayPublishingDisclosure
The tweet announces CVE-2026-32865, describing how password reset tokens are leaked in HTTP responses, enabling an attacker to enumerate emails and take over accounts; no PoC, patch, or active exploitation details are provided.