- EPSS 0.32%
- Veröffentlicht 17.08.2026 17:12:55
- Zuletzt bearbeitet 17.08.2026 18:18:14
Joomla Extension - regularlabs.com - Unauthenticated RCE through unverified reflected user input in Sourcerer < 14.0.0 - Regular Labs Sourcerer before 14.0.0 processes {source} blocks found in Joomla’s final rendered HTML without reliably determining...
CVE-2026-64796
- EPSS 0.29%
- Veröffentlicht 22.07.2026 20:42:49
- Zuletzt bearbeitet 27.07.2026 19:17:21
Joomla Extension - regularlabs.com - various code injection vectors in Sourcerer extension - Free did not require both the article creator and last modifier to be Super Users before executing article PHP. Pro did not consistently enforce configured C...
CVE-2026-64792
- EPSS 0.25%
- Veröffentlicht 22.07.2026 20:40:58
- Zuletzt bearbeitet 27.07.2026 18:16:59
Joomla Extension - regularlabs.com - disclosure of restricted content via search index in various Regular Labs extensions - Smart Search indexing could render generated content using the indexing administrator’s identity instead of a public guest. Re...