CVE-2026-65876
joomshaper.com SP Page Builder extension for Joomla
Joomla Extension - joomshaper.com - Unauthenticated SQL injection in SP Page Builder < 6.7.1 - Improper validation of catid parameters in the loadMoreArticles endpoint leads to an SQL injection vector.
- CVSS
- 9.2
- EPSS
- - - percentile
- CISA KEV
- Not listed
- Published
- 2026.07.27