OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-92226

MEDIUM · CVSS 6 EPSS 0.26%

Source: NVD + CISA KEV + EPSS · Published 2026-09-29 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

Joomla! versions 4.0.0 to 5.4.8 and 6.0.0 to 6.1.3 are vulnerable due to improper access control checks, allowing unauthorized users to edit restricted items through various web service tasks. This vulnerability poses a significant risk, as it can lead to unauthorized modifications of content and settings, potentially compromising the integrity of the affected Joomla! installations. Organizations using these versions should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-92226
Severity
MEDIUM
CVSS
6
EPSS
0.26%

Original NVD Description

Joomla! Core - [20260913] - Core - Improper ACL checks for varous webservice edit tasks in Joomla 4.0.0-5.4.8, 6.0.0-6.1.3 - An improper access check allows unauthorized users to perform edit actions on otherwise uneditable items.

Related CVEs

Other vulnerabilities affecting the same vendor(s)