โ† All reports

The use of AngularJS 1.5.2 in SicuroWeb (Sicuro24) by Beghelli introduces significant security risks due to its end-of-life status and known vulnerabilities.

CybersecurityTechnologyConflictApr 23, 2026score 0.173 posts ยท 0 replies across 1 instances
The thread discusses multiple vulnerabilities in Beghelli's SicuroWeb (Sicuro24) product, including the use of an outdated AngularJS version and insufficient security measures like lack of Content Security Policy enforcement, which could allow attackers to exploit the system.

Claims

The use of AngularJS 1.5.2 in SicuroWeb (Sicuro24) by Beghelli introduces significant security risks due to its end-of-life status and known vulnerabilities.
Parent: CybersecurityEntity: SicuroWeb (Sicuro24) by BeghelliImpact: negativeDate: Apr 23, 2026Target: The use of AngularJS 1.5.2 in SicuroWeb (Sicuro24) by Beghelli
The lack of a Content Security Policy in SicuroWeb (Sicuro24) by Beghelli allows unrestricted loading of external JavaScript resources, increasing the risk of exploitation.
Parent: CybersecurityEntity: SicuroWeb (Sicuro24) by BeghelliImpact: negativeDate: Apr 23, 2026Target: The lack of a Content Security Policy in SicuroWeb (Sicuro24) by Beghelli

Source posts

@[email protected]
๐ŸŸ  CVE-2026-41468 - High (8.7) Beghelli Sicuro24 SicuroWeb embeds AngularJS 1.5.2, an end-of-life component containing known sandbox escape primitives. When combined with template injection present in the same application, these primitives allow attackers to escape the AngularJ... ๐Ÿ”— https://www.thehackerwire.com/vulnerability/CVE-2026-41468/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
1 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cve#vulnerability#infosec#cybersecurity#security#tenda
@[email protected]
๐Ÿšจ EUVD-2026-25077 ๐Ÿ“Š Score: 5.1/10 (CVSS v3.1) ๐Ÿ“ฆ Product: SicuroWeb (Sicuro24) ๐Ÿข Vendor: Beghelli ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ Beghelli Sicuro24 SicuroWeb does not enforce a Content Security Policy, allowing unrestricted loading of external JavaScript resources from attacker-controlled origins. When chained with the template injection and sandbox escape vulnerabilities... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25077 #cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2026-25075 ๐Ÿ“Š Score: 9.3/10 (CVSS v3.1) ๐Ÿ“ฆ Product: SicuroWeb (Sicuro24) ๐Ÿข Vendor: Beghelli ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ Beghelli Sicuro24 SicuroWeb embeds AngularJS 1.5.2, an end-of-life component containing known sandbox escape primitives. When combined with template injection present in the same application, these primitives allow attackers to escape the Angul... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25075 #cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cybersecurity#infosec#euvd#cve#vulnerability