CVE-2026-34828 | knadh listmonk up to 6.0.x Password Change session expiration (GHSA-h5j9-cvrw-v5qh)
A vulnerability described as critical has been identified in knadh listmonk up to 6.0.x. Affected by this issue is some unknown functionality of the component Password Change Handler. Executing a manipulation can lead to session expiration.
This vulnerability is tracked as CVE-2026-34828. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is recommended.