VYPR

Conditions manager

by Regular Labs

CVEs (3)

  • CVE-2026-63280Jul 22, 2026
    risk 0.00cvss epss 0.00

    Joomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in Regular Labs conditions manager - Conditions administration did not consistently enforce tokens and component/mapped-item permissions.

  • CVE-2026-63683Jul 22, 2026
    risk 0.00cvss epss 0.00

    Joomla Extension - regularlabs.com - Client IP spoofing vulnerability in Regular Labs conditions manager - IP and GeoIP conditions trusted spoofable forwarded headers, allowing remote clients to bypass location-based rules.

  • CVE-2026-63281Jul 22, 2026
    risk 0.00cvss epss 0.00

    Joomla Extension - regularlabs.com - XSS vulnerability in Regular Labs conditions manager - Stored condition values could also execute HTML/JavaScript in administrator summaries.