Published 6/5/2026 · updated 6/16/2026 · CWE-284
A vulnerability in the JCE editor extension for Joomla allows the creation of new editor profiles for unauthenticated users, ultimately resulting in PHP code upload and execution.
Percentile p53 — Higher than 53% of all CVEs — moderate exploitation risk.
Which upstream feeds returned data for this CVE, and when they were last fetched.
Added 2026-06-16 · Remediation overdue by 45 days.
Unlock the full report
Free public data ends here. Sign in to correlate this CVE against your SBOM and assets, get an AI-grounded exploit chain, generate a ModSecurity virtual patch, and share findings with your team.