SEPTEMBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-58078

HIGH · CVSS 8.7 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-07-16 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

The Quix Page Builder Pro extension for Joomla versions prior to 6.2.1 is susceptible to an unauthenticated SQL injection vulnerability, allowing attackers to execute arbitrary SQL queries on the database. This could lead to unauthorized data access or manipulation, posing significant risks to the integrity and confidentiality of the affected Joomla installations. Joomla administrators and users of the Quix Page Builder Pro extension should prioritize immediate updates to mitigate potential exploitation.

CVE
CVE-2026-58078
Severity
HIGH
CVSS
8.7
EPSS
0.24%

Original NVD Description

Joomla Extension - themexpert.com - Unauthenticated SQL injection in Quix Page Builder Pro < 6.2.1 - The Joomla extension Quix Page Builder Pro is vulnerable to an unauthenticated SQL injection.