SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-66488

MEDIUM · CVSS 5.3 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-07-29 · Last synced 2026-08-28

CyberRota Analysis

AI-Generated

The Gridbox extension for Joomla versions prior to 2.20.2 is vulnerable to a payment bypass issue, allowing unauthorized users to potentially bypass payment processes. This could lead to financial losses for businesses relying on the extension for e-commerce functionalities. Organizations using this extension should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-66488
Severity
MEDIUM
CVSS
5.3
EPSS
0.20%

Original NVD Description

Joomla Extension - balbooa.com - Payment bypass in Gridbox < 2.20.2

Related CVEs

Other vulnerabilities affecting the same vendor(s)