iCagenda and Balbooa Forms Joomla Flaws Reportedly Exploited as Zero-Days

iCagenda and Balbooa Forms Joomla Flaws Reportedly Exploited as Zero-Days

The U.S. Cybersecurity and Infrastructure Security Agency has flagged two critical zero-day vulnerabilities in iCagenda and Balbooa extensions for Joomla, adding them to its Known Exploited Vulnerabilities catalog. These flaws, each rated 10.0 on the CVSS scale, are being actively exploited by attackers in real-world attacks. Given Joomla's popularity among website builders, this poses a significant risk to many online platforms relying on these extensions. It's crucial for users to patch these vulnerabilities promptly to avoid potential data breaches and other malicious activities.

Original Source

Read the full article at Thehackernews →

KhanList aggregates and links to publicly available news content. We do not host full articles from third-party sources. Always verify important information with original sources.