CVE-2026-56290

Joomla Extension - joomlack.fr - Unauthenticated file upload in Page Builder CK extension < 3.6.0 - The Joomla extension Page Builder CK is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full RCE.
Configurations

Configuration 1 (hide)

cpe:2.3:a:joomlack:page_builder_ck:*:*:*:*:*:joomla\!:*:*

History

No history.

Information

Published : 2026-06-29 15:16

Updated : 2026-07-24 13:31


NVD link : CVE-2026-56290

Mitre link : CVE-2026-56290

CVE.ORG link : CVE-2026-56290


JSON object : View

Products Affected

joomlack

  • page_builder_ck
CWE
CWE-434

Unrestricted Upload of File with Dangerous Type