CyberRota Analysis
AI-GeneratedThe GeoIP extension for Joomla is vulnerable to IP spoofing due to its reliance on potentially spoofable forwarded client-IP headers, which may allow attackers to bypass GeoIP-based access controls. This could lead to unauthorized access or manipulation of content based on geographic location. Joomla administrators and users of the GeoIP extension should prioritize this vulnerability to mitigate potential security risks.
CVE
CVE-2026-64875
Severity
MEDIUM
CVSS
6.5
EPSS
0.21%
Original NVD Description
Joomla Extension - regularlabs.com - IP spoofing vulnerability in GeoIP extension - GeoIP lookups trusted spoofable forwarded client-IP headers, this could cause GeoIP-rule bypass.