What is CVE-2026-65947?
CVE-2026-65947 covers several CSRF (Cross-Site Request Forgery) vectors found in the admin interface of the Gridbox extension for Joomla, affecting versions prior to 2.20.2. This vulnerability could allow an attacker to trick an authenticated administrator into executing unwanted actions. Users are advised to update the Gridbox extension to at least version 2.20.2.
Azərbaycanca: CVE-2026-65947, Joomla üçün Gridbox genişləndirilməsinin 2.20.2 versiyasından əvvəlki versiyalarında admin interfeysində mövcud olan müxtəlif CSRF (Cross-Site Request Forgery) vektorlarını əhatə edir. Bu zəiflik autentifikasiya olunmuş admin istifadəçini aldadaraq, onun icazəsi olmadan təhlükəli əməliyyatlar icra etməyə imkan yarada bilər. İstifadəçilərə Gridbox genişləndirilməsini ən azı 2.20.2 versiyasına yeniləmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-352
FAQ2
Which version should I update to in order to patch CVE-2026-65947?
You should update the Gridbox extension to at least version 2.20.2.
What type of attack can be carried out against an authenticated admin because of CVE-2026-65947?
An authenticated admin user may be tricked into executing unwanted actions.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.