← Back to feed
Vulnerabilities & PatchesEmerging1 sourceAug 14, 2026 · 02:00via CVEFeed

CVE-2026-19784 - francoisjacquet RosarioSIS Referrals.php DBUpdate authorization

Brief

CVE ID : CVE-2026-19784

Published : Aug. 14, 2026, 2 a. m.

  • 1 hour, 5 minutes ago

Description : A flaw has been found in francoisjacquet RosarioSIS up to 12.

  • This affects the function DBUpdate of the file Discipline/Referrals. php. This manipulation causes authorization bypass. The attack may be initiated remotely. The exploit has been published and may be used. Upgrading to version 12. 9 is able to mitigate this issue. Patch name: 04dd1a368ddf80ad7082baefa3c656e4e1825c76.

It is suggested to upgrade the affected component.

Severity: 0.0

  • NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Read more on CVEFeed