SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-57827

CRITICAL · CVSS 9.8 EPSS 0.40%

Source: NVD + CISA KEV + EPSS · Published 2026-07-11 · Last synced 2026-08-10

CyberRota Analysis

AI-Generated

The RSFiles component of the Joomla extension is vulnerable to unauthenticated arbitrary file uploads, allowing attackers to upload executable files that can lead to full remote code execution. This critical vulnerability poses a significant risk to any Joomla installations utilizing affected versions prior to 1.17.12. Organizations using this extension should prioritize immediate patching to mitigate potential exploitation.

CVE
CVE-2026-57827
Severity
CRITICAL
CVSS
9.8
EPSS
0.40%

Original NVD Description

Joomla Extension - rsjoomla.com - Unauthenticated file upload in RSFiles component < 1.17.12 - The Joomla extension RSFiles is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full RCE.

Related CVEs

Other vulnerabilities affecting the same vendor(s)