Vulnerability intelligence
CVE-2026-56291
Joomla Extension balbooa.com Unauthenticated file upload in Balbooa Forms extension < 2.4.1 The Joomla extension Balbooa Forms is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full RCE.
CVSS Score
10
Critical
EPSS — Exploit Probability
76%
Riskier than 100% of all CVEs
Exploitation
Confirmed in the wild
KEV since 2026-07-10
Remediation
unknown
Federal deadline 2026-07-13
6 articles across 5 outlets · first covered Jul 10, 2026 · latest Jul 13, 2026
Tracked incidents
Associated threat actors
Coverage timeline
-
Unauthenticated RCE Flaws Hit Joomla Extensions Balbooa, iCagendawww.securityweek.com · Jul 13, 2026
-
CISA Flags iCagenda, Balbooa Forms Flaws; Urges Fix by July 2026securityaffairs.com · Jul 11, 2026
-
Apache IoTDB Fixes Path Traversal and Authentication Bypass Flaws (CVE-2026-24014)securityonline.info · Jul 11, 2026
-
Silver Fox uses SEO tricks to drop MODBEACON trojan via bugssecurityonline.info · Jul 11, 2026
-
CISA KEV Catalog Highlights CVE-2026-56291 Flaw in Balbooa Formswww.cisa.gov · Jul 10, 2026
-
CVE-2026-56291 lets attackers hijack systems via Balbooa Formscisa.gov · Jul 10, 2026