Australia Alerts Organizations to Ongoing CMS Exploitation AttacksSecurity Affairs·Jul 13, 07:39 UTC · Jul 13, 2026Exploit / PoC in the wildCVE-2025-34085CVE-2020-36847CVE-2025-12057+15 CVEs60
iCagenda and Balbooa Forms Joomla Flaws Reportedly Exploited as ZeroThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoC in the wildCVE-2026-48939CVE-2026-56291CVE-2025-6389+9 CVEs60
SQL Injection zero-day in component ja-k2-filter-andSecurity Affairs·Oct 19, 15:00 UTC · Oct 19, 2016Exploit / PoC60
Experts spotted a login page flaw in Joomla that exposes admin credentialsSecurity Affairs·Sep 21, 16:08 UTC · Sep 21, 2017Exploit / PoCCVE-2017-14596CVE-2017-1459560