Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 16 Jun 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
ssvc
|
ssvc
|
Tue, 16 Jun 2026 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
kev
|
Tue, 16 Jun 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 05 Jun 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 05 Jun 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Joomlacontenteditor.net
Joomlacontenteditor.net joomla Content Editor (jce) Extension For Joomla |
|
| Vendors & Products |
Joomlacontenteditor.net
Joomlacontenteditor.net joomla Content Editor (jce) Extension For Joomla |
Fri, 05 Jun 2026 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability in the JCE editor extension for Joomla allows the creation of new editor profiles for unauthenticated users, ultimately resulting in PHP code upload and execution. | |
| Title | Joomla Extension - joomlacontenteditor.net - Remote Code Execution in JCE extension for Joomla < 2.9.99.5 | |
| Weaknesses | CWE-284 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Joomla
Published:
Updated: 2026-06-20T11:56:48.886Z
Reserved: 2026-05-26T10:06:17.657Z
Link: CVE-2026-48907
Updated: 2026-06-05T20:20:57.067Z
Status : Awaiting Analysis
Published: 2026-06-05T08:16:30.797
Modified: 2026-06-16T20:16:46.727
Link: CVE-2026-48907
No data.
OpenCVE Enrichment
Updated: 2026-06-24T12:15:05Z