Security Advisory

CVE-2026-65759

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-23 16:42:54
Last updated 2026-07-24 07:20:09
Assigner Joomla
CVSS score 8.7
State PUBLISHED

Description

Joomla Extension - joomshaper.com - unauthenticated payment/order forgery in Easy Store extension 1.0.0-2.0.1 - Critical order and payment information, including states, are processed from client side input, enabling unauthenticated attackers to manipulate payment and order states of arbritrary orders.