CVE-2026-35507: CVE-2026-35507: Shynet before 0.14.0 allows Host header injection in the password reset flow. — Zero Day Monitor