CVE-2026-78083

Joomla Extension - joomshaper.com - Missing CSRF Token Verification in Property Booking and Agent Contact Endpoints in SP Property < 4.1.4 - The visitor booking (properties.booking) and agent contact form submission (agents.sendmail) endpoints processed POST requests without verifying Joomla session anti-CSRF tokens.
CVSS

No CVSS.

Configurations

No configuration.

History

No history.

Information

Published : 2026-09-10 10:17

Updated : 2026-09-10 15:13


NVD link : CVE-2026-78083

Mitre link : CVE-2026-78083

CVE.ORG link : CVE-2026-78083


JSON object : View

Products Affected

No product.

CWE
CWE-352

Cross-Site Request Forgery (CSRF)