Joomla CMS
A popular content management system (CMS) whose extensions iCagenda and Balbooa Forms were exploited as zero-days.
A popular content management system (CMS) whose extensions iCagenda and Balbooa Forms were exploited as zero-days.
A framework targeted in a global CMS exploitation campaign for web shell deployment.
A vulnerability in the Ninja Forms WordPress plugin exploited in a global CMS campaign for web shell deployment.
A vulnerability in the WavePlayer WordPress plugin exploited in a global CMS campaign for web shell deployment.
A vulnerability in the WPBookit WordPress plugin exploited in a global CMS campaign for web shell deployment.
A vulnerability in the Breeze Cache WordPress plugin exploited in a global CMS campaign for web shell deployment.
Joomla is the provider of the Joomla content management system (CMS). It warned users about active exploitation of a critical flaw in…
WordPress Core is affected by the wp2shell vulnerability chain (CVE-2026-60137, CVE-2026-63030), enabling unauthenticated code execution via REST API and SQL injection.