An issue in the login and reset password functionality of Backdrop CMS v1.22.0 allows attackers to enumerate usernames via password reset requests and distinct responses returned based on usernames.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-34530.json"