CVE-2026-48904
EUVD-2026-3187526.05.2026, 17:16
An improper access check allows privelege escalation through the com_users group editing webservice endpoint.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| joomla | joomla\! | 4.0.0 ≤ 𝑥 < 5.4.6 |
| joomla | joomla\! | 6.0.0 ≤ 𝑥 < 6.1.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration