CVE-2026-7083Disclosure

LOWCVSS 2.0 · LOW

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability has been found in likeadmin-likeshop likeadmin_php up to 1.9.6. Affected by this issue is the function queryResult of the file server\app\adminapi\lists\tools\DataTableLists.php of the component dataTable Admin API. The manipulation leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-89

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 3 classified signals
  • Peaked 1d ago at 3 mentions (2026-04-27); latest day: 1
  • 4 total mentions across 2 days

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-04-27: 3Mentions · 2026-10-07: 1Technical Details · 2026-04-27: 204-2710-07
Signal classification1 categories
Disclosure
3100.0%
Referenced assets3 URLs
Full discourse4 posts
  • General Intels Daily@intels_daily

    🔴 𝗖𝗥𝗜𝗧𝗜𝗖𝗔𝗟 · 𝗖𝗹𝗮𝗶𝗺𝗲𝗱 𝗱𝗮𝘁𝗮𝗯𝗮𝘀𝗲 𝗹𝗲𝗮𝗸 🏢 Attributed to: 龙卡易购 (𝗟𝗼𝗻𝗴𝗸𝗮 𝗬𝗶𝗴𝗼𝘂) 👤 Actor: updap 📦 Claimed: 1.7K records 🧩 Products: 𝗹𝗶𝗸𝗲𝗮𝗱𝗺𝗶𝗻_𝗽𝗵𝗽, 𝗧𝗵𝗶𝗻𝗸𝗣𝗛𝗣 🛡️ CVE-2026-7083 Threat actor 'updap' claims to offer data attributed to 龙卡易购 (Longka Yigou). Unverified claim. #DataLeak #ThreatIntel #CTI

    00000141
    845 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-7083 A vulnerability has been found in likeadmin-likeshop likeadmin_php up to 1.9.6. Affected by this issue is the function queryResult of the file server\app\adminapi\lists… https://www.cve.org/CVERecord?id=CVE-2026-7083

    Post summary

    A new vulnerability (CVE-2026-7083) affecting the queryResult function of likeadmin-likeshop up to version 1.9.6 has been reported, with no PoC, exploits, or patch details provided in the text.

    0000092
    57.3K followersView on X
  • CVEarity@CVEarity
    Disclosure

    ⚡ New CVE Alert: CVE-2026-7083 📊 Severity: 4.7 🚨 Risk Level: Medium 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-7083 #CVE-2026-7083 #CVE #Medium #CyberSecurity #InfoSec https://t.co/JMyw8hg69e

    Post summary

    The tweet announces CVE-2026-7083 with a moderate severity rating, without providing technical or mitigative details.

    0000036
    141 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-7083 SQL Injection in likeadmin-likeshop likeadmin_php Up To 1.9.6 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7083

    Post summary

    This announcement identifies CVE-2026-7083, a SQL injection flaw affecting likeadmin‑likeshop up to version 1.9.6, with no mention of exploitation or remediation.

    0000045
    4.0K followersView on X

Explore more