PT-2026-43314 · Joomla · Joomla! Cms

Published

2026-05-26

·

Updated

2026-05-26

·

CVE-2026-48896

CVSS v4.0

8.2

High

VectorAV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N
Insufficient state checks lead to a vector that allows to bypass 2FA checks.

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2026-48896

Affected Products

Joomla! Cms