CVE-2026-102780

CVE-2026-102780 published: Joomla Extension - joomlafry.com - Unauthenticated cross-record publication and mass assignment in TF Content 2.9.0 - 2.9.4 - The extension unconditionally authorizes both creation and editing in its public `RecordController`. Its shared frontend save contr...

View full NVD advisory → ← Back to CVE watch