What is CVE-2026-64874?
This vulnerability in the Cache Cleaner Pro extension for Joomla by Regular Labs causes CDN credentials to be exposed in administrator request URLs. Attackers can intercept these credentials on affected systems. Users are advised to immediately update the extension to the latest version.
Azərbaycanca: Bu zəiflik Joomla üçün Regular Labs tərəfindən hazırlanmış Cache Cleaner Pro genişlənməsində CDN etimadnamələrinin administrator sorğu URL-lərində sızmasına səbəb olur. Təsirə məruz qalan sistemlərdə hücumçular bu etimadnamələri ələ keçirə bilər. İstifadəçilərə dərhal genişlənməni son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-200; shared vendor: regularlabs.com
FAQ2
Which extension is affected by CVE-2026-64874?
This vulnerability exists in the Cache Cleaner Pro extension for Joomla by Regular Labs.
What information is exposed as a result of this vulnerability?
CDN credentials are exposed in administrator request URLs.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.