What is CVE-2026-71571?
CVE-2026-71571 is an authenticated SQL injection vulnerability in the iCagenda extension for Joomla. Due to an unescaped numeric filter, backend operators with iCagenda permissions can inject SQL queries. It is recommended to update iCagenda to version 2.0.0-4.0.11.
Azərbaycanca: CVE-2026-71571, Joomla üçün iCagenda genişlənməsində autentifikasiya olunmuş SQL injection zəifliyidir. Xüsusilə ('escaped edilməmiş') ədədi filter sahəsindəki boşluq səbəbindən, iCagenda icazələri olan backend operatorları SQL sorğusu yeridə bilər. iCagenda-nı 2.0.0-4.0.11 versiyasına yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-89; shared vendor: icagenda.com
FAQ2
Which extension for Joomla is affected by CVE-2026-71571?
This vulnerability affects the iCagenda extension for Joomla.
To which version should iCagenda be updated to protect against CVE-2026-71571?
It is recommended to update iCagenda to version 2.0.0-4.0.11.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.