Back to search
CVE-2026-21626
Published: Feb 6, 2026
Modified: Feb 20, 2026
PUBLISHED
Description
Access control settings for forum post custom fields are not applied to the JSON output type, leading to an ACL violation vector an information disclosure
| Vendor | Product | Versions |
|---|---|---|
Stackideas.com | EasyDiscuss extension for Joomla | affected 1.0.0-5.0.15 |
Weaknesses (CWE)
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now