CVE-2026-65886
balbooa.com Gridbox extension for Joomla
Joomla Extension - balbooa.com - Unauthenticated arbitrary file read in Gridbox < 2.20.2 - The photo viewer allows unauthenticated attackers to view arbitrary files.
- CVSS
- 9.2
- EPSS
- - - percentile
- CISA KEV
- Not listed
- Published
- 2026.07.30