Black & White Path
Jun 29, 2026 · Information Security
CVSS 10.0 JCE Editor Vulnerability in Joomla Actively Exploited and Scanned on GitHub
CVE‑2026‑48907 in Joomla's popular JCE editor scores a perfect CVSS 10.0, is listed in CISA's KEV catalog as actively exploited, and can be triggered by an unauthenticated attacker with just three HTTP requests, prompting urgent patching and thorough post‑patch forensics.
CISACVE-2026-48907GitHub scanner
0 likes · 11 min read
