CVE-2026-64791

NONE
CVSS v3
CVSS v2
EPSS (exploit probability)
CWE-284CWE

Description

Joomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in Regular Labs Extension Manager - Administrator routes and install/update/uninstall processing did not consistently enforce component-management and installation permissions. An unauthorized backend user or CSRF attack could install, update or remove extensions.

Affected routers (0)

No routers currently mapped to this CVE in our database.

External references