What is CVE-2026-67285?
CVE-2026-67285 is an unauthenticated arbitrary local PHP file inclusion vulnerability in the SP Page Builder extension for Joomla, affecting versions before 6.8.0. An attacker could include malicious local PHP files accessible by the system. Immediate update to the latest patched version is strongly advised.
Azərbaycanca: CVE-2026-67285, Joomla üçün SP Page Builder plaginində autentifikasiya olmadan ixtiyari lokal PHP fayl daxiletmə (arbitrary local PHP file inclusion) zəifliyidir. 6.8.0-dən əvvəlki versiyalar təsirlənir. Sistemə zərər verməmək üçün dərhal plaginin son versiyasına yeniləmə tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-22; shared vendor: joomshaper.com
FAQ1
What platform does CVE-2026-67285 affect?
CVE-2026-67285 affects the SP Page Builder extension for Joomla.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.