SEPTEMBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-62414

CRITICAL · CVSS 9.1 EPSS 0.23%

Source: NVD + CISA KEV + EPSS · Published 2026-07-20 · Last synced 2026-08-19

CyberRota Analysis

AI-Generated

The Page Builder CK extension for Joomla prior to version 3.6.2 has a critical vulnerability due to improper access control in its frontend page list views, potentially allowing unauthorized users to access and manipulate sensitive content. This flaw poses a significant risk to websites utilizing this extension, as it could lead to data exposure or unauthorized modifications. Joomla site administrators and developers using this extension should prioritize immediate updates to mitigate potential exploitation.

CVE
CVE-2026-62414
Severity
CRITICAL
CVSS
9.1
EPSS
0.23%

Original NVD Description

Joomla Extension - joomlack.fr - Improper access control in Page Builder CK < 3.6.2 - The Joomla extension Page Builder CK does not properly apply access control to frontend page list views.