CVE-2025-68402 | FreshRSS password_verify improper authentication (GHSA-pcq9-mq6m-mvmp)
A vulnerability marked as critical has been reported in FreshRSS. Impacted is the function password_verify. The manipulation leads to improper authentication.
This vulnerability is documented as CVE-2025-68402. The attack can be initiated remotely. There is not any exploit available.
It is recommended to apply a patch to fix this issue.