SEPTEMBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-61901

MEDIUM · CVSS 6.1 EPSS 0.14%

Source: NVD + CISA KEV + EPSS · Published 2026-07-20 · Last synced 2026-08-19

CyberRota Analysis

AI-Generated

The Hikashop Joomla extension versions prior to 6.5.2 are susceptible to an open redirect vulnerability, allowing attackers to manipulate URLs and redirect users to malicious sites. This could lead to phishing attacks or the distribution of malware, posing a risk to users who rely on this extension for e-commerce functionality. Joomla administrators and web developers using Hikashop should prioritize applying the latest updates to mitigate this risk.

CVE
CVE-2026-61901
Severity
MEDIUM
CVSS
6.1
EPSS
0.14%

Original NVD Description

Joomla Extension - hikashop.com - Open redirect in Hikashop < 6.5.2 - The Joomla extension Hikashop is vulnerable to an open redirect.