Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.8 HIGH
CVE-2026-38766 — Protegent 360 Local Privilege Escalation

An issue in Unistal Systems Pvt. Ltd.Protegent 360 v2.0.0.4 allows a local attacker to escalate privileges via the sub_186f4 function

| Authorization
Jul 22, 2026 Jul 24, 2026
Jul 22, 2026
Jul 24, 2026
7.8 HIGH
CVE-2026-38765 — Protegent 360 Kernel Driver Privilege Escalation

An issue in Unistal Systems Pvt. Ltd.Protegent 360 v2.0.0.4 allows a local attacker to escalate privileges via the kernel driver pgsecdl.sys

| Information Disclosure
Jul 22, 2026 Jul 24, 2026
Jul 22, 2026
Jul 24, 2026
5.5 MEDIUM
CVE-2026-38763 — Protegent 360 Denial of Service Vulnerability

An issue in Unistal Systems Pvt. Ltd.Protegent 360 v2.0.0.4 allows a local attacker to cause a denial of service via the function sub_13828

| Denial of Service
Jul 22, 2026 Jul 24, 2026
Jul 22, 2026
Jul 24, 2026
5.3 MEDIUM
CVE-2026-16630 — syncfusion ej2-javascript-ui-controls package.json child_process.exec os command injection

A security vulnerability has been detected in syncfusion ej2-javascript-ui-controls up to 33.2.3. This affects the function child_process.exec of the file package.json. The manipulation leads to os c…

Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
5.3 MEDIUM
CVE-2026-16629 — danger danger-js CLI localGetFileAtSHA.ts danger.git.diffForFile os command injection

A vulnerability was identified in danger danger-js up to 13.0.7. Impacted is the function danger.git.diffForFile of the file source/platforms/git/localGetFileAtSHA.ts of the component CLI. Such manip…

danger-js | Injection
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
5.3 MEDIUM
CVE-2026-16628 — oclif JIT Plugin Entry child_process.exec os command injection

A vulnerability was detected in oclif up to 4.23.16. Affected by this vulnerability is the function child_process.exec of the component JIT Plugin Entry Handler. Performing a manipulation of the argu…

oclif | Injection
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
0.0 NA
CVE-2026-64798 — Joomla Extension - regularlabs.com - Insecure login URL keys in IP login extension

Joomla Extension - regularlabs.com - Insecure login URL keys in IP login extension - Persistent URL login keys were also generated using a non-cryptographic random generator with insufficient entropy.

| Cryptography
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
0.0 NA
CVE-2026-64797 — Joomla Extension - regularlabs.com - IP spoofing vulnerability in IP login extension

Joomla Extension - regularlabs.com - IP spoofing vulnerability in IP login extension - IP Login trusted forwarded client-IP headers without requiring a configured trusted proxy. Attackers could spoof…

| Misconfiguration
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
0.0 NA
CVE-2026-64796 — Joomla Extension - regularlabs.com - various code injection vectors in Sourcerer extension

Joomla Extension - regularlabs.com - various code injection vectors in Sourcerer extension - Free did not require both the article creator and last modifier to be Super Users before executing article…

| Authentication
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
0.0 NA
CVE-2026-64795 — Joomla Extension - regularlabs.com - XSS vectors in tag-provided inputs in various Regula…

Joomla Extension - regularlabs.com - XSS vectors in tag-provided inputs in various Regular Labs extensions - Tag-provided custom HTML, module content/title overrides and decoded modal or tooltip valu…

| Cross-Site Scripting
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
0.0 NA
CVE-2026-64794 — Joomla Extension - regularlabs.com - restricted user-data exposure in Users Anywhere and …

Joomla Extension - regularlabs.com - restricted user-data exposure in Users Anywhere and Articles Anywhere extensions - User tags, filters and conditions allowed access to insufficiently restricted u…

| Information Disclosure
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
0.0 NA
CVE-2026-64793 — Joomla Extension - regularlabs.com - Content access and publication bypass in Articles An…

Joomla Extension - regularlabs.com - Content access and publication bypass in Articles Anywhere and Modules Anywhere extensions - Content tags could use ignore flags or property overrides to render r…

| Authorization
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
0.0 NA
CVE-2026-64792 — Joomla Extension - regularlabs.com - disclosure of restricted content via search index in…

Joomla Extension - regularlabs.com - disclosure of restricted content via search index in various Regular Labs extensions - Smart Search indexing could render generated content using the indexing adm…

| Misconfiguration
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
0.0 NA
CVE-2026-64791 — Joomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in…

Joomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in Regular Labs Extension Manager - Administrator routes and install/update/uninstall processing did not consist…

| Authorization
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
0.0 NA
CVE-2026-63685 — Joomla Extension - regularlabs.com - Authorization bypass in DB Replacer extension

Joomla Extension - regularlabs.com - Authorization bypass in DB Replacer extension - Administrator routes and replacement requests did not consistently require Super User permission and a valid token…

| Authorization
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
0.0 NA
CVE-2026-63684 — Joomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in…

Joomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in various admin/import/export actions of multiple Regular Labs extension - Administrator actions, editor popups…

| Cross-Site Request Forgery
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
0.0 NA
CVE-2026-63683 — Joomla Extension - regularlabs.com - Client IP spoofing vulnerability in Regular Labs con…

Joomla Extension - regularlabs.com - Client IP spoofing vulnerability in Regular Labs conditions manager - IP and GeoIP conditions trusted spoofable forwarded headers, allowing remote clients to bypa…

| Misconfiguration
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
0.0 NA
CVE-2026-63281 — Joomla Extension - regularlabs.com - XSS vulnerability in Regular Labs conditions manager

Joomla Extension - regularlabs.com - XSS vulnerability in Regular Labs conditions manager - Stored condition values could also execute HTML/JavaScript in administrator summaries.

| Cross-Site Scripting
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
0.0 NA
CVE-2026-63280 — Joomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in…

Joomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in Regular Labs conditions manager - Conditions administration did not consistently enforce tokens and component…

| Authorization
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
0.0 NA
CVE-2026-63265 — Joomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in…

Joomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in various Regular Labs extension AJAX endpoints - Privileged Regular Labs AJAX endpoints did not consistently r…

| Cross-Site Request Forgery
Jul 22, 2026 Jul 23, 2026
Jul 22, 2026
Jul 23, 2026
Showing 20 of 8954 Results