Product
high
advisory
Path Traversal Vulnerability in Joomla com_joomlaupdate
1 TTP 1 CVEJoomla version 6.1.1 contains a path traversal vulnerability in the com_joomlaupdate extension allowing a Super User to be manipulated into extracting malicious ZIP files, leading to arbitrary file write and remote code execution.
Joomla +1
web-vulnerability
path-traversal
remote-code-execution
1t
1c
updated
critical
threat
iCagenda Unrestricted File Upload Vulnerability Leading to RCE (CVE-2026-48939)
1 rule 2 TTPs 5 CVEs 7 IOCsAttackers are actively exploiting CVE-2026-48939, an unrestricted file upload vulnerability in iCagenda, to upload malicious PHP code and achieve remote code execution on affected web servers.
exploited
PoC
iCagenda +19
web-application
rce
file-upload
cve
1r
2t
5c
7i
updated
medium
advisory
Joomla: Multiple Vulnerabilities Allowing XSS and Data Modification
1 TTPMultiple vulnerabilities in Joomla allow a remote, unauthenticated or authenticated attacker to display false information, launch Cross-Site Scripting (XSS) attacks, and modify data, potentially leading to integrity compromises and further client-side exploitation.
Joomla
cms
vulnerability
xss
web-vulnerability
data-integrity
1t