CVE-2026-10236Disclosure

LOWCVSS 5.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability has been found in SourceCodester Water Billing Management System 1.0. This issue affects some unknown processing of the file /classes/Users.php?f=save of the component User Management Endpoint. Such manipulation leads to improper authorization. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-266CWE-285

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-06-30: 1Technical Details · 2026-06-30: 106-30
Signal classification1 categories
Disclosure
1100.0%
Full discourse1 post
  • Joey Romaine 🇺🇸 |=★=|@Tank23x0
    Disclosure

    CVE-2026-10236: high severity (CVSS 7.3). vulnerability has a remote code execution issue worth scoping now. Treat it like a small fire drill before it becomes a large one.

    Post summary

    The text announces CVE-2026-10236 as a high‑severity remote code execution vulnerability (CVSS 7.3) without mentioning PoC, exploit code, or patch details, and provides no evidence of active exploitation.

    1000043
    336 followersView on X

Explore more