| Incident | 10.09.2026 19:00 | Ransomware.live: alphaomega-eng.com (lockbit5) |
| Incident | 10.09.2026 12:54 | Cyberangriff auf die Arbeiterkammer Oberösterreich – Datenzugriff betrifft möglicherweise auch Salzburg |
| Incident | 09.09.2026 21:50 | Ransomware.live: mo***al (AuditTeam) |
| Incident | 09.09.2026 13:31 | Ransomware.live: https://mediengruppethiel.de/ (incransom) |
| Incident | 08.09.2026 19:49 | Ransomware.live: reichenau.at (safepay) |
| Incident | 07.09.2026 15:29 | Ransomware.live: KÖRBER (everest) |
| Incident | 07.09.2026 01:32 | Ransomware.live: Medela.com (shinyhunters) |
| Incident | 04.09.2026 20:57 | Ransomware.live: kalahealth.eu (lockbit5) |
| Incident | 04.09.2026 14:53 | Ransomware.live: Stransky Heiz-Mess-Regeltechnik GmbH (akira) |
| Incident | 04.09.2026 00:51 | Ransomware.live: Hochschule Heilbronn Bildungscampus (Panzer) |
| Incident | 03.09.2026 20:22 | Ransomware.live: A...en (SilentRansomGroup) |
| Incident | 01.09.2026 09:02 | Ransomware.live: uicc.org (krybit) |
| Incident | 01.09.2026 08:58 | Ransomware.live: dmt-group.com (krybit) |
| Incident | 01.09.2026 00:00 | Cyber-Kriminelle verschlüsseln IT-Systeme der Stadtwerke Landsberg |
| Incident | 31.08.2026 19:51 | Ransomware.live: crmeyer.com (BrainCipher) |
| Incident | 31.08.2026 14:27 | Ransomware.live: Meteor Group (play) |
| Incident | 31.08.2026 13:58 | Ransomware.live: KFZ-MEISTERBETRIEB JOST GmbH (akira) |
| Incident | 30.08.2026 09:53 | Ransomware.live: Ixa Systems (thegentlemen) |
| Incident | 29.08.2026 09:50 | Ransomware.live: terra-petra.com (lockbit5) |
| Incident | 28.08.2026 14:29 | Berlin Senatsverwaltung |
| Incident | 27.08.2026 17:02 | Ransomware.live: Kling Automaten (qilin) |
| Incident | 27.08.2026 13:04 | Ransomware.live: GPS Grothkopp und Partner (qilin) |
| Incident | 27.08.2026 10:52 | Ransomware.live: SCA Logistik & Fulfillment GmbH (aurora) |
| Incident | 27.08.2026 05:50 | Daten des Abwasserverbands Grazerfeld im Darknet veröffentlicht |
| Incident | 27.08.2026 05:31 | ÖVP meldet Hackerangriff auf Parteizentrale |
| Incident | 26.08.2026 15:35 | Ransomware.live: Verbux (thegentlemen) |
| Incident | 25.08.2026 12:53 | Ransomware.live: WINTER Ingenieure (akira) |
| Incident | 24.08.2026 00:54 | Ransomware.live: resi.com (krybit) |
| Incident | 23.08.2026 21:26 | Ransomware.live: Westwing Group SE (coinbasecartel) |
| Incident | 23.08.2026 07:36 | Ransomware.live: MPA Pharma GmbH (metaencryptor) |
| Incident | 22.08.2026 22:54 | Ransomware.live: el-group (incransom) |
| Incident | 22.08.2026 08:00 | Ransomware.live: holzmarkt chemnitz (spacebears) |
| Incident | 21.08.2026 08:30 | Ransomware.live: dlp motive (thegentlemen) |
| Incident | 20.08.2026 17:26 | Ransomware.live: Qualiflex Datacenter | HWZ-Studiengnge (fh-hwz.ch), myenb.ch, etc (payload) |
| Incident | 19.08.2026 12:28 | Ransomware.live: Estech (qilin) |
| Incident | 19.08.2026 11:00 | Ransomware.live: Smart Energies (qilin) |
| Schwachstelle | 18.08.2026 17:17 | CVE-2026-73372 |
| Schwachstelle | 18.08.2026 17:17 | CVE-2026-71572 |
| Schwachstelle | 18.08.2026 17:17 | CVE-2026-71573 |
| Schwachstelle | 18.08.2026 17:17 | CVE-2026-72531 |
| Schwachstelle | 18.08.2026 17:17 | CVE-2026-73336 |
| Schwachstelle | 18.08.2026 16:18 | CVE-2026-73371 |
| Schwachstelle | 18.08.2026 16:18 | CVE-2026-73373 |
| Schwachstelle | 18.08.2026 16:18 | CVE-2026-71574 |
| Schwachstelle | 18.08.2026 16:18 | CVE-2026-72532 |
| Schwachstelle | 18.08.2026 16:18 | CVE-2026-73337 |
| Incident | 18.08.2026 13:19 | Ransomware.live: Logitech/ Streamlabs (shinyhunters) |
| Incident | 18.08.2026 10:26 | Ransomware.live: ssf-int.com ssf-ing.de (incransom) |
| Incident | 18.08.2026 03:21 | Ransomware.live: Scholle IPN / SIG (anubis) |
| Incident | 17.08.2026 16:22 | Ransomware.live: Planungsgruppe M+M AG (aurora) |
| Schwachstelle | 16.08.2026 18:54 | [20130402] - Core - Information Disclosure |
| Schwachstelle | 16.08.2026 18:54 | [20130403] - Core - XSS Vulnerability |
| Schwachstelle | 16.08.2026 18:54 | [20130405] - Core - XSS Vulnerability |
| Schwachstelle | 16.08.2026 18:54 | [20140901] - Core - XSS Vulnerability |
| Schwachstelle | 16.08.2026 18:54 | [20140902] - Core - Unauthorised Logins |
| Schwachstelle | 16.08.2026 18:54 | [20140903] - Core - Remote File Inclusion |
| Schwachstelle | 16.08.2026 18:54 | [20140904] - Core - Denial of Service |
| Schwachstelle | 16.08.2026 18:54 | [20150601] - Core - Open Redirect |
| Schwachstelle | 16.08.2026 18:54 | [20150602] - Core - CSRF Protection |
| Schwachstelle | 16.08.2026 18:54 | [20150908] - Core - XSS Vulnerability |
| Schwachstelle | 16.08.2026 18:54 | [20151002] - Core - ACL Violations |
| Schwachstelle | 16.08.2026 18:54 | [20151001] - Core - SQL Injection |
| Schwachstelle | 16.08.2026 18:54 | [20151204] - Core - Directory Traversal |
| Schwachstelle | 16.08.2026 18:54 | [20151203] - Core - Directory Traversal |
| Schwachstelle | 16.08.2026 18:54 | [20151202] - Core - CSRF Hardening |
| Schwachstelle | 16.08.2026 18:54 | [20151201] - Core - Remote Code Execution Vulnerability |
| Schwachstelle | 16.08.2026 18:54 | [20161001] - Core - Account Creation |
| Schwachstelle | 16.08.2026 18:54 | [20161002] - Core - Elevated Privileges |
| Schwachstelle | 16.08.2026 18:54 | [20161003] - Core - Account Modifications |
| Schwachstelle | 16.08.2026 18:54 | Security Announcements |
| Schwachstelle | 16.08.2026 18:54 | [20161202] - Core - Shell Upload |
| Schwachstelle | 16.08.2026 18:54 | [20161203] - Core - Information Disclosure |
| Schwachstelle | 16.08.2026 18:54 | [20170401] - Core - Information Disclosure |
| Schwachstelle | 16.08.2026 18:54 | [20170402] - Core - XSS Vulnerability |
| Schwachstelle | 16.08.2026 18:54 | [20170404] - Core - XSS Vulnerability |
| Schwachstelle | 16.08.2026 18:54 | [20170405] - Core - XSS Vulnerability |
| Schwachstelle | 16.08.2026 18:54 | [20170406] - Core - ACL Violations |
| Schwachstelle | 16.08.2026 18:54 | [20170407] - Core - ACL Violations |
| Schwachstelle | 16.08.2026 18:54 | [20170408] - Core - Information Disclosure |
| Schwachstelle | 16.08.2026 18:54 | [20170501] - Core - SQL Injection |
| Schwachstelle | 16.08.2026 18:54 | [20170403] - Core - XSS Vulnerability |
| Schwachstelle | 16.08.2026 18:54 | [20170701] - Core - Information Disclosure |
| Schwachstelle | 16.08.2026 18:54 | [20170705] - Core - XSS Vulnerability |
| Schwachstelle | 16.08.2026 18:54 | [20170704] - Core - Installer: Lack of Ownership Verification |
| Schwachstelle | 16.08.2026 18:54 | [20170901] - Core - Information Disclosure |
| Schwachstelle | 16.08.2026 18:54 | [20170902] - Core - LDAP Information Disclosure |
| Schwachstelle | 16.08.2026 18:54 | [20171102] - Core - 2-factor-authentication bypass |
| Schwachstelle | 16.08.2026 18:54 | [20171103] - Core - Information Disclosure |
| Schwachstelle | 16.08.2026 18:54 | Security Announcements |
| Schwachstelle | 16.08.2026 18:54 | [20180103] - Core - XSS vulnerability in Uri class |
| Schwachstelle | 16.08.2026 18:54 | [20180104] - Core - SQLi vulnerability in Hathor postinstall message |
| Schwachstelle | 16.08.2026 18:54 | [20180301] - Core - SQLi vulnerability User Notes |
| Schwachstelle | 16.08.2026 18:54 | [20180501] - Core - ACL violation in access levels |
| Schwachstelle | 16.08.2026 18:54 | [20180502] - Core - Add PHAR files to the upload blacklist |
| Schwachstelle | 16.08.2026 18:54 | [20180503] - Core - Information Disclosure about unpublished tags |
| Schwachstelle | 16.08.2026 18:54 | [20180504] - Core - Installer leaks plain text password to local user |
| Schwachstelle | 16.08.2026 18:54 | [20180505] - Core - XSS Vulnerabilities & additional hardening |
| Schwachstelle | 16.08.2026 18:54 | [20180506] - Core - Filter field in com_fields allows remote code execution |
| Schwachstelle | 16.08.2026 18:54 | [20180507] - Core - Session deletion race condition |
| Schwachstelle | 16.08.2026 18:54 | [20180508] - Core - Possible XSS attack in the redirect method |
| Schwachstelle | 16.08.2026 18:54 | [20180509] - Core - XSS vulnerability in the media manager |
| Schwachstelle | 16.08.2026 18:54 | [20180601] - Core - Local File Inclusion with PHP 5.3 |
| Schwachstelle | 16.08.2026 18:54 | [20180602] - Core - XSS vulnerability in language switcher module |
| Schwachstelle | 16.08.2026 18:54 | Security Announcements |
| Schwachstelle | 16.08.2026 18:54 | [20180802] - Core - Stored XSS vulnerability in the frontend profile |
| Schwachstelle | 16.08.2026 18:54 | [20180803] - Core - ACL Violation in custom fields |
| Schwachstelle | 16.08.2026 18:54 | [20181001] - Core - Hardening com_contact contact form |
| Schwachstelle | 16.08.2026 18:54 | [20181002] - Core - Inadequate default access level for com_joomlaupdate |
| Schwachstelle | 16.08.2026 18:54 | [20181003] - Core - Access level Violation in com_tags |
| Schwachstelle | 16.08.2026 18:54 | [20181004] - Core - ACL Violation in com_users for the admin verification |
| Schwachstelle | 16.08.2026 18:54 | [20181005] - Core - CSRF hardening in com_installer |
| Schwachstelle | 16.08.2026 18:54 | [20190101] - Core - Stored XSS in mod_banners |
| Schwachstelle | 16.08.2026 18:54 | [20190102] - Core - Stored XSS in com_contact |
| Schwachstelle | 16.08.2026 18:54 | Security Announcements |
| Schwachstelle | 16.08.2026 18:54 | [20190104] - Core - Stored XSS issue in the Global Configuration help url |
| Schwachstelle | 16.08.2026 18:54 | [20190201] - Core - Lack of URL filtering in various core components |
| Schwachstelle | 16.08.2026 18:54 | [20190202] - Core - Browserside mime-type sniffing causes XSS attack vectors |
| Schwachstelle | 16.08.2026 18:54 | [20190203] - Core - Additional warning in the Global Configuration textfilter settings |
| Schwachstelle | 16.08.2026 18:54 | [20190204] - Core - Stored XSS issue in the Global Configuration help url #2 |
| Schwachstelle | 16.08.2026 18:54 | [20190205] - Core - XSS Issue in core.js writeDynaList |
| Schwachstelle | 16.08.2026 18:54 | [20190301] - Core - XSS in com_config JSON handler |
| Schwachstelle | 16.08.2026 18:54 | [20190302] - Core - XSS in item_title layout |
| Schwachstelle | 16.08.2026 18:54 | [20190303] - Core - XSS in media form field |
| Schwachstelle | 16.08.2026 18:54 | [20190304] - Core - Missing ACL check in sample data plugins |
| Schwachstelle | 16.08.2026 18:54 | [20190401] - Core - Directory Traversal in com_media |
| Schwachstelle | 16.08.2026 18:54 | [20190402] - Core - Helpsites refresh endpoint callable for unauthenticated users |
| Schwachstelle | 16.08.2026 18:54 | [20190403] - Core - Object.prototype pollution in JQuery $.extend |
| Schwachstelle | 16.08.2026 18:54 | [20190601] - Core - CSV injection in com_actionlogs |
| Schwachstelle | 16.08.2026 18:54 | [20190602] - Core - XSS in subform field |
| Schwachstelle | 16.08.2026 18:54 | [20190603] - Core - ACL hardening of com_joomlaupdate |
| Schwachstelle | 16.08.2026 18:54 | [20190701] - Core - Filter attribute in subform fields allows remote code execution |
| Schwachstelle | 16.08.2026 18:54 | [20190801] - Core - Hardening com_contact contact form |
| Schwachstelle | 16.08.2026 18:54 | [20190901] - Core - XSS in logo parameter of default templates |
| Schwachstelle | 16.08.2026 18:54 | [20191001] - Core - CSRF in com_template overrides view |
| Schwachstelle | 16.08.2026 18:54 | [20191002] - Core - Path Disclosure in phpuft8 mapping files |
| Schwachstelle | 16.08.2026 18:54 | Security Announcements |
| Schwachstelle | 16.08.2026 18:54 | [20191202] - Core - Various SQL injections through configuration parameters |
| Schwachstelle | 16.08.2026 18:54 | [20200101] - Core - CSRF in batch actions |
| Schwachstelle | 16.08.2026 18:54 | [20200102] - Core - CSRF com_templates LESS compiler |
| Schwachstelle | 16.08.2026 18:54 | [20200103] - Core - XSS in com_actionlogs |
| Schwachstelle | 16.08.2026 18:54 | [20200301] - Core - CSRF in com_templates image actions |
| Schwachstelle | 16.08.2026 18:54 | [20200302] - Core - XSS in Protostar and Beez3 |
| Schwachstelle | 16.08.2026 18:54 | [20200303] - Core - Incorrect Access Control in com_templates |
| Schwachstelle | 16.08.2026 18:54 | [20200305] - Core - Incorrect Access Control in com_fields SQL field |
| Schwachstelle | 16.08.2026 18:54 | [20200304] - Core - Identifier collisions in com_users |
| Schwachstelle | 16.08.2026 18:54 | [20200306] - Core - SQL injection in Featured Articles menu parameters |
| Schwachstelle | 16.08.2026 18:54 | [20200401] - Core - Incorrect access control in com_users access level editing function |
| Schwachstelle | 16.08.2026 18:54 | [20200402] - Core - Missing checks for the root usergroup in usergroup table |
| Schwachstelle | 16.08.2026 18:54 | [20200403] - Core - Incorrect access control in com_users access level deletion function |
| Schwachstelle | 16.08.2026 18:54 | [20200601] - Core - XSS in modules heading tag option |
| Schwachstelle | 16.08.2026 18:54 | [20200603] - Core - XSS in com_modules tag options |
| Schwachstelle | 16.08.2026 18:54 | [20200604] - Core - XSS in jQuery.htmlPrefilter |
| Schwachstelle | 16.08.2026 18:54 | [20200605] - Core - CSRF in com_postinstall |
| Schwachstelle | 16.08.2026 18:54 | [20200701] - Core - CSRF in com_installer ajax_install endpoint |
| Schwachstelle | 16.08.2026 18:54 | [20200702] - Core - Missing checks can lead to a broken usergroups table record |
| Schwachstelle | 16.08.2026 18:54 | [20200703] - Core - CSRF in com_privacy remove-request feature |
| Schwachstelle | 16.08.2026 18:54 | [20200704] - Core - Variable tampering via user table class |
| Schwachstelle | 16.08.2026 18:54 | [20200705] - Core - Escape mod_random_image link |
| Schwachstelle | 16.08.2026 18:54 | [20200706] - Core - System Information screen could expose redis or proxy credentials |
| Schwachstelle | 16.08.2026 18:54 | Security Announcements |
| Schwachstelle | 16.08.2026 18:54 | [20200803] - Core - Directory traversal in com_media |
| Schwachstelle | 16.08.2026 18:54 | [20200802] - Core - Open redirect in com_content vote feature |
| Schwachstelle | 16.08.2026 18:54 | [20201101] - Core - com_finder ignores access levels on autosuggest |
| Schwachstelle | 16.08.2026 18:54 | [20201102] - Core - Disclosure of secrets in Global Configuration page |
| Schwachstelle | 16.08.2026 18:54 | [20201103] - Core - Path traversal in mod_random_image |
| Schwachstelle | 16.08.2026 18:54 | [20201104] - Core - SQL injection in com_users list view |
| Schwachstelle | 16.08.2026 18:54 | [20201105] - Core - User Enumeration in backend login |
| Schwachstelle | 16.08.2026 18:54 | [20201106] - Core - CSRF in com_privacy emailexport feature |
| Schwachstelle | 16.08.2026 18:54 | [20201107] - Core - Write ACL violation in multiple core views |
| Schwachstelle | 16.08.2026 18:54 | [20210101] - Core - com_modules exposes module names |
| Schwachstelle | 16.08.2026 18:54 | [20210102] - Core - XSS in mod_breadcrumbs aria-label attribute |
| Schwachstelle | 16.08.2026 18:54 | [20210103] - Core - XSS in com_tags image parameters |
| Schwachstelle | 16.08.2026 18:54 | [20210309] - Core - Inadequate filtering of form contents could allow to overwrite the author field |
| Schwachstelle | 16.08.2026 18:54 | [20210307] - Core - ACL violation within com_content frontend editing |
| Schwachstelle | 16.08.2026 18:54 | [20210304] - Core - XSS within the feed parser library |
| Schwachstelle | 16.08.2026 18:54 | [20210308] - Core - Path Traversal within joomla/archive zip class |
| Schwachstelle | 16.08.2026 18:54 | [20210303] - Core - XSS within alert messages showed to users |
| Schwachstelle | 16.08.2026 18:54 | [20210302] - Core - Potential Insecure FOFEncryptRandval |
| Schwachstelle | 16.08.2026 18:54 | [20210301] - Core - Insecure randomness within 2FA secret generation |
| Schwachstelle | 16.08.2026 18:54 | [20210305] - Core - Input validation within the template manager |
| Schwachstelle | 16.08.2026 18:54 | [20210401] - Core - Escape xss in logo parameter error pages |
| Schwachstelle | 16.08.2026 18:54 | [20210402] - Core - Inadequate filters on module layout settings |
| Schwachstelle | 16.08.2026 18:54 | [20210501] - Core - Adding HTML to the executable block list of MediaHelper::canUpload |
| Schwachstelle | 16.08.2026 18:54 | Security Announcements |
| Schwachstelle | 16.08.2026 18:54 | [20210503] - Core - CSRF in data download endpoints |
| Schwachstelle | 16.08.2026 18:54 | [20210701] - Core - XSS in JForm Rules field |
| Schwachstelle | 16.08.2026 18:54 | [20210702] - Core - DoS through usergroup table manipulation |
| Schwachstelle | 16.08.2026 18:54 | [20210703] - Core - Lack of enforced session termination |
| Schwachstelle | 16.08.2026 18:54 | [20210704] - Core - Privilege escalation through com_installer |
| Schwachstelle | 16.08.2026 18:54 | [20210705] - Core - XSS in com_media imagelist |
| Schwachstelle | 16.08.2026 18:54 | [20210801] - Core - Insufficient access control for com_media deletion endpoint |
| Schwachstelle | 16.08.2026 18:54 | [20220309] - Core - XSS attack vector through SVG |
| Schwachstelle | 16.08.2026 18:54 | [20220308] - Core - Inadequate content filtering within the filter code |
| Schwachstelle | 16.08.2026 18:54 | [20220307] - Core - Variable Tampering on JInput $_REQUEST data |
| Schwachstelle | 16.08.2026 18:54 | [20220306] - Core - Inadequate validation of internal URLs |
| Schwachstelle | 16.08.2026 18:54 | [20220305] - Core - Inadequate filtering on the selected Ids |
| Schwachstelle | 16.08.2026 18:54 | [20220304] - Core - Missing input validation within com_fields class inputs |
| Schwachstelle | 16.08.2026 18:54 | [20220303] - Core - User row are not bound to a authentication mechanism |
| Schwachstelle | 16.08.2026 18:54 | [20220301] - Core - Zip Slip within the Tar extractor |
| Schwachstelle | 16.08.2026 18:54 | [20220801] - Core - Multiple Full Path Disclosures because of missing '_JEXEC or die check' |
| Schwachstelle | 16.08.2026 18:54 | [20221001] - Core - Disclosure of critical information in debug mode |
| Schwachstelle | 16.08.2026 18:54 | [20221002] - Core - RXSS through reflection of user input in headings |
| Schwachstelle | 16.08.2026 18:54 | [20230102] - Core - Missing ACL checks for com_actionlogs |
| Schwachstelle | 16.08.2026 18:54 | [20230101] - Core - CSRF within post-installation messages |
| Schwachstelle | 16.08.2026 18:54 | [20221101] - Core - RXSS through reflection of user input in com_media |
| Schwachstelle | 16.08.2026 18:54 | [20230501] - Core - Open Redirects and XSS within the mfa selection |
| Schwachstelle | 16.08.2026 18:54 | Security Announcements |
| Schwachstelle | 16.08.2026 18:54 | [20231101] - Core - Exposure of environment variables |
| Schwachstelle | 16.08.2026 18:54 | [20240201] - Core - Insufficient session expiration in MFA management views |
| Schwachstelle | 16.08.2026 18:54 | [20240202] - Core - Open redirect in installation application |
| Schwachstelle | 16.08.2026 18:54 | [20240203] - Core - XSS in media selection fields |
| Schwachstelle | 16.08.2026 18:54 | [20240204] - Core - XSS in mail address outputs |
| Schwachstelle | 16.08.2026 18:54 | [20240205] - Core - Inadequate content filtering within the filter code |
| Schwachstelle | 16.08.2026 18:54 | [20240701] - Core - XSS in accessible media selection field |
| Schwachstelle | 16.08.2026 18:54 | [20240702] - Core - Self-XSS in fancyselect list field layout |
| Schwachstelle | 16.08.2026 18:54 | [20240703] - Core - XSS in StringHelper::truncate method |
| Schwachstelle | 16.08.2026 18:54 | [20240704] - Core - XSS in Wrapper extensions |
| Schwachstelle | 16.08.2026 18:54 | [20240705] - Core - XSS in com_fields default field value |
| Schwachstelle | 16.08.2026 18:54 | [20240801] - Core - Inadequate validation of internal URLs |
| Schwachstelle | 16.08.2026 18:54 | [20240802] - Core - Cache Poisoning in Pagination |
| Schwachstelle | 16.08.2026 18:54 | [20240803] - Core - XSS in HTML Mail Templates |
| Schwachstelle | 16.08.2026 18:54 | [20240805] - Core - XSS vectors in Outputfilter::strip* methods |
| Schwachstelle | 16.08.2026 18:54 | [20250102] - Core - XSS vector in the id attribute of menu lists |
| Schwachstelle | 16.08.2026 18:54 | [20250201] - Core - SQL injection vulnerability in Scheduled Tasks component |
| Schwachstelle | 16.08.2026 18:54 | [20250103] - Core - Read ACL violation in multiple core views |
| Schwachstelle | 16.08.2026 18:54 | [20250301] - Core - Malicious file uploads via Media Manager |
| Schwachstelle | 16.08.2026 18:54 | [20250402] - Core - MFA Authentication Bypass |
| Schwachstelle | 16.08.2026 18:54 | [20250401] - Framework - SQL injection vulnerability in quoteNameStr method of Database package |
| Schwachstelle | 16.08.2026 18:54 | [20250902] - Core - User-Enumeration in passkey authentication method |
| Schwachstelle | 16.08.2026 18:54 | Security Announcements |
| Schwachstelle | 16.08.2026 18:54 | [20260102] - Core - XSS vectors in the pagebreak and pagenavigation plugins |
| Schwachstelle | 16.08.2026 18:54 | [20260101] - Core - Inadequate content filtering for data URLs |
| Schwachstelle | 16.08.2026 18:54 | [20260306] - Core - Improper access check in webservice endpoints |
| Schwachstelle | 16.08.2026 18:54 | [20260305] - Core - Arbitrary file deletion in com_joomlaupdate |
| Schwachstelle | 16.08.2026 18:54 | [20260304] - Core - XSS vectors in various article title outputs |
| Schwachstelle | 16.08.2026 18:54 | [20260303] - Core - XSS vector in com_associations comparison view |
| Schwachstelle | 16.08.2026 18:54 | [20260302] - Core - SQL injection in com_content articles webservice endpoint |
| Schwachstelle | 16.08.2026 18:54 | [20260301] - Core - ACL hardening in com_ajax |
| Schwachstelle | 16.08.2026 18:54 | [20260501] - Core - XSS in feed modules |
| Schwachstelle | 16.08.2026 18:54 | [20260502] - Core - XSS in com_associations |
| Schwachstelle | 16.08.2026 18:54 | [20260503] - Core - XSS in com_contenthistory |
| Schwachstelle | 16.08.2026 18:54 | [20260504] - Core - XSS in readmore links |
| Schwachstelle | 16.08.2026 18:54 | [20260505] - Core - CSRF in user activation endpoint |
| Schwachstelle | 16.08.2026 18:54 | [20260506] - Core - Authenticated blind SQLi in com_finder |
| Schwachstelle | 16.08.2026 18:47 | Security Announcements |
| Schwachstelle | 16.08.2026 18:47 | Security Announcements |
| Schwachstelle | 16.08.2026 18:47 | Security Announcements |
| Schwachstelle | 16.08.2026 18:47 | Security Announcements |
| Schwachstelle | 16.08.2026 18:47 | Security Announcements |
| Schwachstelle | 16.08.2026 18:47 | Security Announcements |