SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-65758

HIGH · CVSS 8.2 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

The Convert Forms extension for Joomla versions 2.5.0 to 5.2.2 is vulnerable due to a lack of access control in the front-end Submissions view, allowing unauthenticated users to access and list sensitive form submissions. This exposure could lead to unauthorized disclosure of personal data, impacting user privacy and compliance with data protection regulations. Joomla site administrators using this extension should prioritize addressing this vulnerability to safeguard sensitive information.

CVE
CVE-2026-65758
Severity
HIGH
CVSS
8.2
EPSS
0.20%

Original NVD Description

Joomla Extension - tassos.gr - Sensitive data exposure in Convert Forms extension 2.5.0-5.2.2 - The front-end Submissions view did not enforce access control. An unauthenticated visitor could therefore list a form's submissions.