PatchSiren

OpenRapid CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

Review OpenRapid CVE published 2026-05-27

CVE-2026-38930

CVE-2026-38930 describes an authentication bypass vulnerability in OpenRapid RapidCMS v1.3.1, specifically within the /template/default/menu.php component. The vulnerability can be exploited by injecting a crafted SQL payload into the 'name' cookie parameter. The CVE was published on 2026-05-27 and subsequently modified later that same day. The vulnerability status in the National Vulnerability Database i [truncated]