The use of AngularJS 1.5.2 in SicuroWeb (Sicuro24) by Beghelli introduces significant security risks due to its end-of-life status and known vulnerabilities.
Claims
The use of AngularJS 1.5.2 in SicuroWeb (Sicuro24) by Beghelli introduces significant security risks due to its end-of-life status and known vulnerabilities.
Parent: CybersecurityEntity: SicuroWeb (Sicuro24) by BeghelliImpact: negativeDate: Apr 23, 2026Target: The use of AngularJS 1.5.2 in SicuroWeb (Sicuro24) by Beghelli
The lack of a Content Security Policy in SicuroWeb (Sicuro24) by Beghelli allows unrestricted loading of external JavaScript resources, increasing the risk of exploitation.
Parent: CybersecurityEntity: SicuroWeb (Sicuro24) by BeghelliImpact: negativeDate: Apr 23, 2026Target: The lack of a Content Security Policy in SicuroWeb (Sicuro24) by Beghelli
Source posts
๐ CVE-2026-41468 - High (8.7)
Beghelli Sicuro24 SicuroWeb embeds AngularJS 1.5.2, an end-of-life component containing known sandbox escape primitives. When combined with template injection present in the same application, these primitives allow attackers to escape the AngularJ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-41468/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
1 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cve#vulnerability#infosec#cybersecurity#security#tenda
๐จ EUVD-2026-25077
๐ Score: 5.1/10 (CVSS v3.1)
๐ฆ Product: SicuroWeb (Sicuro24)
๐ข Vendor: Beghelli
๐
Updated: 2026-04-22
๐ Beghelli Sicuro24 SicuroWeb does not enforce a Content Security Policy, allowing unrestricted loading of external JavaScript resources from attacker-controlled origins. When chained with the template injection and sandbox escape vulnerabilities...
๐ https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25077
#cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
๐จ EUVD-2026-25075
๐ Score: 9.3/10 (CVSS v3.1)
๐ฆ Product: SicuroWeb (Sicuro24)
๐ข Vendor: Beghelli
๐
Updated: 2026-04-22
๐ Beghelli Sicuro24 SicuroWeb embeds AngularJS 1.5.2, an end-of-life component containing known sandbox escape primitives. When combined with template injection present in the same application, these primitives allow attackers to escape the Angul...
๐ https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25075
#cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cybersecurity#infosec#euvd#cve#vulnerability