Security Advisory

CVE-2026-48939

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-20 11:56:50
Last updated 2026-07-11 05:32:01
Assigner Joomla
CVSS score 10.0
State PUBLISHED

Description

A vulnerability in the iCagenda extension for Joomla allows the upload of arbitrary files in the file attachment feature, ultimately resulting in PHP code upload and execution.