CVE-2025-64421 | coollabsio coolify up to 4.0.0-beta.434 Password Reset authorization (GHSA-4p6r-m39m-9cm9 / WID-SEC-2026-0031)
A vulnerability, which was classified as very critical, has been found in coollabsio coolify up to 4.0.0-beta.434. Affected is an unknown function of the component Password Reset Handler. This manipulation causes incorrect authorization.
This vulnerability appears as CVE-2025-64421. The attack may be initiated remotely. There is no available exploit.