U.S. CISA adds Widget Factory Joomla Content Editor (JCE) flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 17, 15:18 UTC · Jun 17, 2026Exploit / PoC in the wildCVE-2026-4890760
iCagenda and Balbooa Forms Joomla Flaws Reportedly Exploited as ZeroThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoC in the wildCVE-2026-48939CVE-2026-56291CVE-2025-6389+9 CVEs60
Australia Alerts Organizations to Ongoing CMS Exploitation AttacksSecurity Affairs·Jul 13, 07:39 UTC · Jul 13, 2026Exploit / PoC in the wildCVE-2025-34085CVE-2020-36847CVE-2025-12057+15 CVEs60
Solarium Commission wants action on stalled cybersecurity recommendationsCyberScoop·Sep 19, 16:32 UTC · Sep 19, 2023Exploit / PoC in the wild60