What is CVE-2026-65712?
This vulnerability exists in the Regular Labs CDN for Joomla Pro extension due to insecure path handling. A remote attacker can exploit the CDN versioning mechanism to check file paths outside the site directory, exposing local file existence and modification metadata. Users should immediately apply the update provided by the developer.
Azərbaycanca: Bu boşluq Joomla üçün Regular Labs CDN for Joomla Pro genişlənməsində etibarsız fayl yolu idarəetməsi səbəbindən baş verir. Uzaqdan hücumçu, sayt qovluğundan kənar faylların mövcudluğunu və metadata bilgilərini oxumaq üçün CDN versiyalama mexanizmindən istifadə edə bilər. Bu genişlənmənin istifadəçiləri dərhal tərtibatçı tərəfindən təqdim olunan yeniləməni tətbiq etməlidir.
Related CVEs
link basis: same weakness class CWE-22; shared vendor: regularlabs.com
FAQ2
What can a remote attacker achieve by exploiting CVE-2026-65712?
A remote attacker can exploit the CDN versioning mechanism to check file paths outside the site directory, exposing local file existence and modification metadata.
What should Regular Labs CDN for Joomla Pro users do about CVE-2026-65712?
Users should immediately apply the update provided by the developer.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.