CVE-2026-63683

Summary

Joomla Extension - regularlabs.com - Client IP spoofing vulnerability in Regular Labs conditions manager - IP and GeoIP conditions trusted spoofable forwarded headers, allowing remote clients to bypass location-based rules.

Affected Software

VendorProductVersion RangeStatus
regularlabs.comAdvanced Module Manager extension for Joomla1.0.0-11.0.1affected
regularlabs.comConditional Content extension for Joomla1.0.0-6.0.0affected
regularlabs.comContent Templater Pro extension for Joomla1.0.0-13.0.0affected
regularlabs.comReReplacer extension Pro for Joomla1.0.0-15.0.3affected

Weaknesses

  • CWE-290: CWE-290 Authentication Bypass by Spoofing

References