AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-29T15:16:28.813Z and has not been modified since then. The socialLogin method in Gridbox Joomla Extension allows actors to login as any given user on the target site. This critical vulnerability has a CVSS score of 10. Affected product context indicates that Gridbox versions prior to 2.20.2 are vuln [truncated]
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-29T15:16:28.613Z and has not been modified since then. The vulnerability affects Joomla Extension Gridbox version less than 2.20.2, allowing unauthenticated arbitrary password reset. This could potentially allow attackers to login and act as other users, excluding super admins. The CVSS score is 10, [truncated]