SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-64872

MEDIUM · CVSS 6.5 EPSS 0.22%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

The Cache Cleaner Pro extension for Joomla is vulnerable to a path traversal attack, allowing attackers to manipulate custom purge and log paths to escape the webroot directory. This could lead to unauthorized access to sensitive files on the server, potentially compromising the integrity of the application. Joomla administrators using this extension should prioritize patching this vulnerability to mitigate the risk of exploitation.

CVE
CVE-2026-64872
Severity
MEDIUM
CVSS
6.5
EPSS
0.22%

Original NVD Description

Joomla Extension - regularlabs.com - Path traversal in Cache Cleaner Pro extension - Custom purge and log paths could escape the site webroot directory.