Sunday 26 July 2026 08:04:16 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContactLogin
EnglishItaliano

#Joomla extensions


Two Joomla Add-ons, One Old Web Trap: File Uploads That Can Cross Into Code Execution

Published: 13 July 2026 18:09Category: Vulnerabilities & Patch ManagementAuthor: NEONPALADIN

Active exploitation against iCagenda and Balbooa Forms shows how a routine upload feature can become a dangerous server-side trust boundary when controls are too loose.

Two Joomla Extensions Hit CISA’s Exploited List After File Upload Flaws Cross the Line

Published: 13 July 2026 12:24Category: Vulnerabilities & Patch ManagementAuthor: NEONPALADIN

CISA’s KEV catalog now includes iCagenda and Balbooa Forms, a reminder that upload features can become code-execution territory when dangerous files are not tightly controlled.

When a Joomla Add-On Becomes the Entry Point

Published: 13 July 2026 12:15Category: Vulnerabilities & Patch ManagementAuthor: NEONPALADIN

A fresh warning about exploited flaws in two Joomla extensions shows how the quietest part of a website can become the most dangerous one.

Three Stacks, One Deadline: Exploited Flaws Turn Patch Windows into Pressure Points

Published: 08 July 2026 14:42Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: SECURESPECTER

CISA’s latest KEV additions show how quickly a mix of web platforms and extensions can become an operational problem, not just a routine update item.