Skip to main content
Loading…
    CVE-2025-69240 — Raytha CMS allows an attacker to spoof `X-Forwarded-Host` or `Host` headers to attacker controlled domain. The attacker (who knows the victim's email address) can force the server to send an email — CVE Database · The Intelligence Room