security.nuyts.tech
CVE-2016-7965 – NuytsTech Security
DokuWiki 2016-06-26a and older uses $_SERVER[HTTP_HOST] instead of the baseurl setting as part of the password-reset URL. This can lead to phishing attacks. (A