PatchSiren

regularlabs.com CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH regularlabs.com CVE published 2026-07-23

CVE-2026-65755

The CVE-2026-65755 vulnerability is related to date-sensitive query-cache leakage in Joomla's Articles Anywhere and Users Anywhere extensions. This issue allows cached results to remain active across future publication or expiry boundaries, potentially exposing content after it should become unavailable. Organizations using Joomla and these extensions should verify their versions and apply patches to prev [truncated]

HIGH regularlabs.com CVE published 2026-07-23

CVE-2026-65754

The ReReplacer Pro extension for Joomla is vulnerable to insecure path handling, potentially allowing for file reads outside the site directory. This issue affects Joomla users with the ReReplacer Pro extension installed. The vulnerability was published on 2026-07-23T10:16:53.037Z and has not been modified since then. The CVE record indicates an insecure path handling issue, and users should verify their [truncated]

CRITICAL regularlabs.com CVE published 2026-07-23

CVE-2026-65431

A Zipslip vulnerability was found in the Joomla Extension GeoIP. Geo IP database update archives have been broadly extracted without path validation, leading to unsafe file extractions. This vulnerability has a CVSS score of 9.8 and is classified as CRITICAL. Administrators and users of Joomla Extension GeoIP should be aware of this vulnerability and take necessary actions to secure their installations. T [truncated]

HIGH regularlabs.com CVE published 2026-07-23

CVE-2026-65430

CVE-2026-65430 is a HIGH severity vulnerability in the Joomla Extension - regularlabs.com - MaxMind Credential leakage. The vulnerability has a CVSS score of 7.5 and was published on 2026-07-23T10:16:52.613Z. The vulnerability is caused by MaxMind credentials being leaked in request URLs, causing a credential leakage vulnerability. Administrators and users of Joomla Extension - regularlabs.com - MaxMind C [truncated]

HIGH regularlabs.com CVE published 2026-07-23

CVE-2026-64876

The CVE-2026-64876 record details a vulnerability in the GeoIP extension for Joomla, stemming from inconsistent CSRF token checks and privilege checks. This weakness could allow unauthorized updates to the GeoIP extension's database, potentially impacting the security and integrity of Joomla installations that use this extension. The vulnerability was published on 2026-07-23T10:16:52.510Z. The issue may a [truncated]

MEDIUM regularlabs.com CVE published 2026-07-23

CVE-2026-64875

A medium severity vulnerability was found in the GeoIP extension for Joomla, which trusts spoofable forwarded client-IP headers, potentially allowing for GeoIP-rule bypass. This vulnerability has a CVSS score of 6.5 and is classified as medium severity. Administrators and users of the Joomla platform with the GeoIP extension installed should be aware of this vulnerability and take necessary actions to mit [truncated]

CRITICAL regularlabs.com CVE published 2026-07-23

CVE-2026-64874

The CVE record for CVE-2026-64874 was published on 2026-07-23T10:16:52.297Z and has not been modified since then. The NVD entry is currently Deferred. This vulnerability affects Joomla installations using the Cache Cleaner Pro extension from regularlabs.com, potentially allowing unauthorized access to sensitive data due to exposed CDN credentials in administrator request URLs.

HIGH regularlabs.com CVE published 2026-07-23

CVE-2026-64799

CVE-2026-64799 is a high-severity vulnerability in Joomla Extensions Articles Anywhere and Users Anywhere. The vulnerability allows for Server-Side Request Forgery (SSRF) via remote image downloads. Content-controlled image URLs could request private or reserved network services, follow unsafe redirects, and save responses without validating that they were images. This could result in SSRF, internal-data [truncated]