CVE-2026-19784 - francoisjacquet RosarioSIS Referrals.php DBUpdate authorization
Brief
CVE ID : CVE-2026-19784
Published : Aug. 14, 2026, 2 a. m.
- 1 hour, 5 minutes ago
Description : A flaw has been found in francoisjacquet RosarioSIS up to 12.
- This affects the function DBUpdate of the file Discipline/Referrals. php. This manipulation causes authorization bypass. The attack may be initiated remotely. The exploit has been published and may be used. Upgrading to version 12. 9 is able to mitigate this issue. Patch name: 04dd1a368ddf80ad7082baefa3c656e4e1825c76.
It is suggested to upgrade the affected component.
Severity: 0.0
- NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
