CVE-2026-67283
NONE—CVSS v3
—CVSS v2
0.25%
EPSS (exploit probability)
CWE-284CWE
Description
Joomla Extension - tabaoca.org - Improper ACL implementation allows file operations in Cotton Cloud < 2.0.2 - Unauthenticated users could perform various file-related operations (read, delete, overwrite, re-assign permissions) on every file managed within the extension.
Affected routers (0)
No routers currently mapped to this CVE in our database.