CVE-2026-102784

CVE-2026-102784 published: Joomla Extension - balbooa.com - CSRF in language installation feature Gridbox < 2.20.4.0 - PagesController uses a trait that validates the Joomla session token only when the HTTP method is POST. addLanguage does not require POST inside the action and reads...

View full NVD advisory → ← Back to CVE watch