AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2026-21627

UNKNOWN · CVSS N/A EPSS 1.54%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-02-20 · Last synced 2026-08-04

CyberRota Analysis

This vulnerability has an unknown severity rating. See the original NVD description below for full technical details.

CVE
CVE-2026-21627
Severity
UNKNOWN
CVSS
N/A
EPSS
1.54%

Original NVD Description

The vulnerability was rooted in how the Tassos Framework plugin handled specific AJAX requests through Joomla’s com_ajax entry point. Under certain conditions, internal framework functionality could be invoked without proper restriction.