SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-66489

MEDIUM · CVSS 5.3 EPSS 0.21%

Source: NVD + CISA KEV + EPSS · Published 2026-07-29 · Last synced 2026-08-28

CyberRota Analysis

AI-Generated

The Joomla Extension from balbooa.com, specifically versions of Gridbox prior to 2.20.2, is vulnerable to unauthenticated file system disclosure, potentially exposing sensitive files to unauthorized users. This could lead to information leakage and compromise the integrity of the web application. Web administrators and developers using affected versions should prioritize updating to the latest release to mitigate these risks.

CVE
CVE-2026-66489
Severity
MEDIUM
CVSS
5.3
EPSS
0.21%

Original NVD Description

Joomla Extension - balbooa.com - Various unauthenticated file system disclosure in Gridbox < 2.20.2

Related CVEs

Other vulnerabilities affecting the same vendor(s)