News - Security News
- Details
- Written by: Bjørn Ove Bremnes
- Parent Category: News
- Category: News - Security News
Joomla sites using the Joomla Content Editor (JCE) extension should urgently check their installed version and update if it is earlier than 2.9.99.5. CVE-2026-48907 is a critical, actively exploited improper access control flaw that can permit unauthenticated remote code execution through the creation of editor profiles and PHP upload and execution.
Read more: Patch JCE Now for Actively Exploited CVE-2026-48907
- Details
- Written by: Bjørn Ove Bremnes
- Parent Category: News
- Category: News - Security News
Eleven confirmed Joomla extension vulnerabilities disclosed around July 2026 affect popular page builders, forms, download managers, calendar tools and email extensions. Four are listed by CISA as known exploited vulnerabilities, making a complete extension inventory, prompt updates and post-update checks an immediate priority for site owners and agencies.
Read more: Joomla Extension Vulnerabilities: July 2026 Actions for Site Owners
- Details
- Written by: Bjørn Ove Bremnes
- Parent Category: News
- Category: News - Security News
Proof-of-work CAPTCHA Joomla 6: learn what Joomla 6 adds, how to upgrade safely, developer notes, system checks and roadmap guidance for site owners.
Read more: Implement Privacy‑First Proof‑of‑Work CAPTCHAs in Joomla 6 (Step‑by‑Step)
- Details
- Written by: Bjørn Ove Bremnes
- Parent Category: News
- Category: News - Security News
Joomla 6.1 update checklist: learn what Joomla 6.1 adds, how to upgrade safely, developer notes, system checks and roadmap guidance for site owners.
Read more: Joomla 6.1 Pre‑Update Checklist — Security Summary, Backup & Rollback Plan, Staging Tests