SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-65757

HIGH · CVSS 8.1 EPSS 0.13%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

The Modules Anywhere extension for Joomla contains inconsistent CSRF token and privilege checks, allowing authenticated users to access restricted module data without proper permissions. This vulnerability poses a significant risk as it can lead to unauthorized information disclosure. Joomla administrators and users of the affected extension should prioritize remediation to safeguard sensitive data and maintain system integrity.

CVE
CVE-2026-65757
Severity
HIGH
CVSS
8.1
EPSS
0.13%

Original NVD Description

Joomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in Modules Anywhere extension - The editor popup could expose restricted module data to authenticated users without the required module permissions or valid request tokens.