CVE-2026-7783Disclosure

LOWCVSS 2.1 · LOW

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A flaw has been found in CodeCanyon Perfex CRM up to 3.4.1. This vulnerability affects the function AbstractKanban::applySortQuery of the file application/services/AbstractKanban.php of the component Admin Kanban Endpoint. This manipulation of the argument this causes sql injection. It is possible to initiate the attack remotely. The exploit has been published and may be used.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-89

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-05-04); latest day: 2
  • 4 total mentions across 2 days

Deep dive

Activity timeline4 mentions / 2d
01122Mentions · 2026-05-04: 2Mentions · 2026-05-05: 2Technical Details · 2026-05-04: 1Technical Details · 2026-05-05: 205-0405-05
Signal classification2 categories
Disclosure
375.0%
General
125.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-05-042
Disclosure2
2026-05-052
Disclosure1General1
Full discourse4 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-7783 SQL Injection in CodeCanyon Perfex CRM Up to 3.4.1 Admin Kanban Endpoint https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7783

    Post summary

    The text announces CVE-2026-7783 as a SQL injection flaw affecting CodeCanyon's Perfex CRM up to version 3.4.1, with a link to detailed vulnerability information.

    0000041
    4.0K followersView on X
  • CVEarity@CVEarity
    General

    ⚡ New CVE Alert: CVE-2026-7783 📊 Severity: 6.3 🚨 Risk Level: Medium 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-7783 #CVE-2026-7783 #CVE #Medium #CyberSecurity #InfoSec https://t.co/WmliRk7GbL

    Post summary

    The tweet announces CVE‑2026‑7783 with basic severity info but lacks deeper technical, exploitation, or mitigation details.

    0000041
    151 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-7783 A flaw has been found in CodeCanyon Perfex CRM up to 3.4.1. This vulnerability affects the function AbstractKanban::applySortQuery of the file application/services/Abst… https://www.cve.org/CVERecord?id=CVE-2026-7783 ----- Traducción: CVE-2026-7783 Se … http://infoflow.cloud`

    Post summary

    A new CVE-2026-7783 flaw has been identified in CodeCanyon Perfex CRM (up to version 3.4.1), affecting the AbstractKanban::applySortQuery function; no exploit, PoC, or patch details are provided.

    0000031
    75 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-7783 A flaw has been found in CodeCanyon Perfex CRM up to 3.4.1. This vulnerability affects the function AbstractKanban::applySortQuery of the file application/services/Abst… https://www.cve.org/CVERecord?id=CVE-2026-7783

    Post summary

    The post announces CVE-2026-7783, noting it affects the AbstractKanban::applySortQuery function in CodeCanyon Perfex CRM up to version 3.4.1, with no further exploit, patch, or technical detail given.

    00000226
    57.4K followersView on X

Explore more