What is CVE-2026-66488?
This vulnerability allows payment bypass in the Gridbox extension for Joomla prior to version 2.20.2. Affected sites may gain access to paid features without completing payment. It is recommended to immediately update the Gridbox extension to the latest version.
Azərbaycanca: Bu boşluq Joomla üçün Gridbox genişlənməsinin 2.20.2-dən əvvəlki versiyalarında ödəniş prosesini yan keçməyə imkan verir. Təsirə məruz qalan saytlar ödəniş etmədən pullu funksiyalara giriş əldə edə bilər. Dərhal Gridbox genişlənməsini ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: shared vendor: balbooa.com
FAQ2
What software is affected by CVE-2026-66488?
This vulnerability affects the Gridbox extension for Joomla prior to version 2.20.2.
What is the primary recommendation to address CVE-2026-66488?
It is recommended to immediately update the Gridbox extension to the latest version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.