Joomla
- 3
- vulnerabilities tracked
- 7 July 2026
- latest publication
cve
Vulnerability watch
idvulnerabilityseveritypublished
CVE-2026-48948An improper access check allows user to download vcard exports of com_contact contacts that are inaccessible.Joomla Joomla\! High CVSS 8.8 CVE-2026-48957An improper access check allows unauthorized users to access com_privacy datasets.Joomla Joomla\! High CVSS 8.8 CVE-2026-48958An improper access check allows unauthorized users to create custom fields via webservices endpoints.Joomla Joomla\! High CVSS 8.8