What is CVE-2026-64799?
CVE-2026-64799 is an SSRF vulnerability in Regular Labs' Articles Anywhere and Users Anywhere Joomla extensions. It allows attackers to send requests to internal network services and follow unsafe redirects via remote image URLs without validating the response as an actual image. Updating the affected extensions to the latest version is recommended.
Azərbaycanca: CVE-2026-64799 Joomla üçün Regular Labs-un Articles Anywhere və Users Anywhere genişləndirmələrində aşkarlanan SSRF boşluğudur. Uzaqdan yüklənən şəkil URL-ləri vasitəsilə hücumçu daxili şəbəkə servislərinə sorğu göndərib, təhlükəli yönləndirmələri izləyə bilər. Genişləndirmələri ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-918; shared vendor: regularlabs.com
FAQ2
Which Joomla extensions are affected by CVE-2026-64799?
The vulnerability affects Regular Labs' Articles Anywhere and Users Anywhere extensions.
What can an attacker do via CVE-2026-64799?
An attacker can send requests to internal network services and follow unsafe redirects via remote image URLs.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.