Retour à la veille

CVE-2026-100747

Publié : 27 septembre 2026
Modifié : 27 septembre 2026
Lien officiel NVD

Description détaillée

Joomla Extension - svenbluege.de - CSRF in image upload in Event Gallery extension < 6.5.0 - Due to lack of an CSRF token check, a third-party site can upload files to an event and overwrite existing files with the same name.

Références et Patchs