Количество 3
Количество 3
CVE-2026-65891
Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with file management permissions to rename files to otherwise invalid names, resulting in the creation of hidden files. The issue also allowed existing files at the destination path to be unintentionally replaced.
GHSA-chfv-whhw-v522
Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with file management permissions to rename files to otherwise invalid names, resulting in the creation of hidden files. The issue also allowed existing files at the destination path to be unintentionally replaced.
BDU:2026-11396
Уязвимость функции переименования файлов расширения Joomla Content Editor (JCE) системы управления контентом Joomla, позволяющая нарушителю создавать или заменять произвольные файлы
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-65891 Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with file management permissions to rename files to otherwise invalid names, resulting in the creation of hidden files. The issue also allowed existing files at the destination path to be unintentionally replaced. | CVSS3: 6.5 | 0% Низкий | около 2 месяцев назад | |
GHSA-chfv-whhw-v522 Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with file management permissions to rename files to otherwise invalid names, resulting in the creation of hidden files. The issue also allowed existing files at the destination path to be unintentionally replaced. | CVSS3: 6.5 | 0% Низкий | около 2 месяцев назад | |
BDU:2026-11396 Уязвимость функции переименования файлов расширения Joomla Content Editor (JCE) системы управления контентом Joomla, позволяющая нарушителю создавать или заменять произвольные файлы | CVSS3: 6.5 | 0% Низкий | около 2 месяцев назад |
Уязвимостей на страницу