CVE-2026-48907 - Vulnerability Details

Threat entity extracted from intelligence sources

Frequency
6
occurrences
First Seen
June 17, 2026
Last Seen
June 17, 2026

CVE-2026-48907 is a vulnerability tracked across 1 threat cluster and 6 intelligence report mentions on ThreatCluster. First observed June 17, 2026; most recent activity June 17, 2026.

Related Threat Clusters

  • Critical Joomla JCE Vulnerability Under Active Exploitation

    A critical vulnerability in the Joomla Content Editor (JCE), tracked as CVE-2026-48907, allows unauthenticated attackers to execute remote code on affected Joomla sites. This flaw affects JCE versions below 2.9.99.6 and…

    33 articles · Updated June 17, 2026

Recent Intelligence Reports

  • Warning: Critical Vulnerability in Joomla Content Editor Extension (JCE), Patch Immediately! — Ccb.Belgium.Be · June 17, 2026
  • According to mySites.guru — mysites.guru · June 17, 2026
  • Max severity Joomla Content Editor extension flaw targeted in automated attacks — Scworld · June 17, 2026
  • Critical Joomla JCE RCE Added to CISA KEV as Attacks Target Linux Web Servers — Linuxsecurity · June 17, 2026
  • U.S. CISA adds Widget Factory Joomla Content Editor flaw to its Known Exploited Vulnerabilities catalog — Securityaffairs.Co · June 17, 2026
  • CISA orders feds to patch max severity Joomla plugin flaw by Friday — Bleepingcomputer · June 17, 2026

CVSS v3.1 Breakdown