Vulnerability Bulletins

CVE-2026-73337

   
Affected software JOOMLA
 
Joomla! Core - [20260807] - MFA Authentication Bypass in Joomla 4.0.0-5.4.7 and 6.0.0-6.1.2 - Insufficient state checks lead to a vector that allows to bypass 2FA checks.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-73337