SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-64793

CRITICAL · CVSS 9.1 EPSS 0.25%

Source: NVD + CISA KEV + EPSS · Published 2026-07-22 · Last synced 2026-08-21

CyberRota Analysis

AI-Generated

The Articles Anywhere and Modules Anywhere extensions for Joomla are vulnerable to a content access and publication bypass, allowing unauthorized content authors to expose restricted or unpublished articles and modules to users without the necessary access rights. This critical vulnerability could lead to sensitive information disclosure, impacting the confidentiality of the site's content. Organizations using these extensions should prioritize immediate remediation to prevent potential data leaks and unauthorized access.

CVE
CVE-2026-64793
Severity
CRITICAL
CVSS
9.1
EPSS
0.25%

Original NVD Description

Joomla Extension - regularlabs.com - Content access and publication bypass in Articles Anywhere and Modules Anywhere extensions - Content tags could use ignore flags or property overrides to render restricted or unpublished articles or modules. A content author could thereby expose content to visitors who lacked the required access.