CVE-2025-64425HIGH 8.1EPSS p27.3%

CVE-2025-64425CVE-2025-64425

Description

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. In Coolify versions up to and including v4.0.0-beta.434, an attacker can initiate a password reset for a victim, and modify the host header of the request to a malicious value. The victim will receive a password reset email, with a link to the malicious host. If the victim clicks this link, their reset token is sent to the attacker's server, allowing the attacker to use it to change the victim's password and takeover their account. As of time of publication, it is unclear if a patch is available.

Scoring

CVSS 3.18.1 (HIGH)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
EPSS0.36% probability of exploitation · percentile 27.3% · 2026-06-19T12:03:05Z
Published2026-01-05
Last modified2026-01-12

Underlying weaknesses· 1

CWE-644

References

  1. https://drive.google.com/file/d/1I5sJHcpetJbKlwVS2usAD7qmgH37Y4rw/view?usp=drive_link
  2. https://github.com/coollabsio/coolify/security/advisories/GHSA-f737-2p93-g2cw
  3. https://github.com/coollabsio/coolify/security/advisories/GHSA-f737-2p93-g2cw

1

TypeTargetConfidenceTier
WeaknessImproper Neutralization of HTTP Headers for Scripting Syntaxcwe-6440%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
CVE-2025-64421
CVE
CVE-2025-64423
CVE
CVE-2025-64424
CVE
CVE-2025-66212
CVE
CVE-2025-64420
CVE
CVE-2025-66210
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.