SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-64874

CRITICAL · CVSS 9.8 EPSS 0.29%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

The Cache Cleaner Pro extension for Joomla is vulnerable due to the exposure of CDN credentials in administrator request URLs, allowing unauthorized access to sensitive data. This critical vulnerability, with a CVSS score of 9.8, poses a significant risk to any Joomla installations utilizing this extension, making it imperative for administrators to prioritize immediate remediation. Organizations using this extension should assess their systems for potential exploitation and take necessary actions to secure their CDN credentials.

CVE
CVE-2026-64874
Severity
CRITICAL
CVSS
9.8
EPSS
0.29%

Original NVD Description

Joomla Extension - regularlabs.com - CDN Credential leakage Cache Cleaner Pro extension - CDN credentials were exposed in administrator request URLs.