CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-18720

mediumCVSS 5.3covered by 1 sourcefirst seen 2026-08-04
A flaw has been found in kalcaddle kodbox 1.67 Build 02. This vulnerability affects unknown code of the file /index.php?plugin/msgWarning/action of the component msgWarning Plugin. Executing a manipulation can lead to improper authorization. It is possible to launch the attack remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

⚡ Watch CVE-2026-18720

Get an email if CVE-2026-18720 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Advisory coverage (1)

External references

NVD record for CVE-2026-18720

CVE.org record

Embed the live status

CVE-2026-18720 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-18720 status](https://www.csirts.com/badge/CVE-2026-18720)](https://www.csirts.com/cve/CVE-2026-18720)