Vulnerability Description
Joomla Extension - regularlabs.com - Unauthenticated RCE through unverified reflected user input in Sourcerer < 16.0.0 - Regular Labs Sourcerer before 16.0.0 processes {source} blocks found in Joomla’s final rendered HTML without reliably determining where that code originated.
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-74253?
CVE-2026-74253 is a documented vulnerability. Joomla Extension - regularlabs.com - Unauthenticated RCE through unverified reflected user input in Sourcerer < 16.0.0 - Regular Labs Sourcerer before 16.0.0 processes {source} blocks found in Joomla’...
How severe is CVE-2026-74253?
CVSS scoring is not yet available for CVE-2026-74253. Check NVD for updates.
Is there a patch for CVE-2026-74253?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.