SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-64794

MEDIUM · CVSS 6.5 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-07-22 · Last synced 2026-08-21

CyberRota Analysis

AI-Generated

The Joomla extensions Users Anywhere and Articles Anywhere are vulnerable due to insufficient restrictions on user fields, allowing crafted content to expose sensitive information such as authentication data and restricted contact details. This vulnerability poses a medium risk, particularly for websites that utilize these extensions to manage user data. Web administrators and developers using these extensions should prioritize remediation to protect user privacy and prevent potential data breaches.

CVE
CVE-2026-64794
Severity
MEDIUM
CVSS
6.5
EPSS
0.24%

Original NVD Description

Joomla Extension - regularlabs.com - restricted user-data exposure in Users Anywhere and Articles Anywhere extensions - User tags, filters and conditions allowed access to insufficiently restricted user fields. Crafted content could expose authentication-related data, raw user parameters or restricted contact details.