CVE-2026-74253Disclosure

LOWCVSS 10.0 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

Joomla Extension - regularlabs.com - Unauthenticated RCE through unverified reflected user input in Sourcerer < 16.0.0 - Regular Labs Sourcerer before 16.0.0 processes {source} blocks found in Joomla’s final rendered HTML without reliably determining where that code originated.

2.0/ 10 priority

Sources & remediation

Other references
Weakness type (CWE)
CWE-94

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-08-18); latest day: 1
  • 4 total mentions across 3 days

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-08-17: 1Mentions · 2026-08-18: 2Mentions · 2026-08-20: 1PoC Mentioned / Linked · 2026-08-18: 1Patch / Workaround · 2026-08-20: 1Technical Details · 2026-08-17: 1Technical Details · 2026-08-18: 1Technical Details · 2026-08-20: 108-1708-1808-20
Signal classification4 categories
Disclosure
125.0%
General
125.0%
PoC
125.0%
Patch
125.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-08-171
Disclosure1
2026-08-182
General1PoC1
2026-08-201
Patch1
Full discourse4 posts
  • ExploitGrid@exploitgrid
    General

    🛡️ #ExploitGrid Daily #Threat Digest Top Vulnerabilities (CVEs) of the day CVE-2026-19478 - EXPLOIT CVE-2026-71518 - EXPLOIT CVE-2026-74253 CVE-2026-74843 CVE-2026-47686 ..🧵👇

    Post summary

    The post lists several CVEs with a brief EXPLOIT tag for two of them, but no further technical or operational details are provided.

    1103073
    62 followersView on X
  • ExploitGrid@exploitgrid
    PoC

    [CVE] CVE-2026-74253 [HIGH PRIORITY] #Joomla Extension - https://regularlabs.com - Unauthenticated RCE through unverified r... 🔗 https://exploitgrid.net/cve/CVE-2026-74253

    Post summary

    The text announces a high-priority Joomla extension vulnerability (Unauthenticated RCE) and provides a link to a PoC on ExploitGrid.

    1000038
    33 followersView on X
  • SecAlerts@SecAlertsCo
    Patch

    Joomla's Sourcerer plugin has a CVSS 10 unauthenticated RCE flaw (CVE-2026-74253). Unverified {source} block input lets attackers execute arbitrary code. Upgrade to v14.0.0 now. 🧩 #cybersecurity #ciso #vulnerabilities #msp https://secalerts.co/vulnerability/CVE-2026-74253?utm_campaign=x https://t.co/piYtiya7Vr

    Post summary

    The post discloses a high‑severity unauthenticated RCE flaw in Joomla’s Sourcerer plugin (CVE‑2026‑74253) and recommends upgrading to v14.0.0 to mitigate the vulnerability.

    0000066
    878 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-74253 Unauthenticated RCE in Regular Labs Sourcerer Before 14.0.0 via Unverifi... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-74253 Vulnerability Notification: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=3

    Post summary

    The text announces CVE‑2026‑74253, an unauthenticated remote code execution vulnerability affecting Regular Labs Sourcerer versions prior to 14.0.0.

    00000118
    4.1K followersView on X

Explore more