What is CVE-2026-65765?
CVE-2026-65765 is a Path Traversal vulnerability in the Phoca Commander extension for Joomla, affecting versions 1.0.0-6.1.1. Improper limitation of paths for save and download actions could allow remote code execution. Immediate update to the latest version is recommended.
Azərbaycanca: CVE-2026-65765, Joomla üçün Phoca Commander genişlənməsinin 1.0.0-6.1.1 versiyalarına təsir edən Path Traversal zəifliyidir. Saxlama və yükləmə əməliyyatlarında yolların düzgün məhdudlaşdırılmaması səbəbindən uzaqdan kod icrası riski yaranır. Dərhal genişlənməni ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-22; shared vendor: phoca.cz
FAQ2
Which versions of the Phoca Commander extension for Joomla are affected by CVE-2026-65765?
The Path Traversal vulnerability affects versions ranging from 1.0.0 to 6.1.1 of the extension.
What risk does exploiting CVE-2026-65765 pose?
Improper limitation of paths for save and download actions could lead to remote code execution (RCE).
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.