
CVE-2026-40905 LinkAce is a self-hosted archive to collect website links. Prior to 2.5.4, a password reset poisoning vulnerability was identified in the application due to improper … https://www.cve.org/CVERecord?id=CVE-2026-40905
Post summary
The text discloses a password reset poisoning vulnerability (CVE‑2026‑40905) in LinkAce (prior to 2.5.4) without mentioning any PoC, exploit code, active exploitation, or patch.
