Security Advisory

CVE-2026-61900

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-20 18:34:32
Last updated 2026-07-23 14:58:00
Assigner Joomla
CVSS score 10.0
State PUBLISHED

Description

Joomla Extension - dj-extensions.com - Unauthenticated arbitrary file upload in DJ-jDownloads < 4.1.6 - The Joomla extension JDownloads is vulnerable to an unauthenticated file upload, leading to full RCE.