CVE-2026-60025
N/A
N/A
Summary
The Joomla extension Events Booking prior version 5.8.0 had an frontend file upload endpoint that lacked CSRF protection.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| joomdonation.com | Events Booking extension for Joomla | 1.0-5.8.0 | affected |
Weaknesses
- CWE-352: CWE-352 Cross-Site Request Forgery (CSRF)
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.