Gambio · Gambio · CVE-2026-34408
**Name of the Vulnerable Software and Affected Versions**
Gambio versions 4.0.0.0 through 4.9.2.0
**Description**
A flaw in the password reset function allows an attacker to bypass security checks and set arbitrary passwords for any account, provided the account ID is known.
**Recommendations**
Apply the 2024-02 v1.0.0 patch for versions 4.0.0.0 through 4.9.2.0.