CRITICAL 9.2 NVD
CVE-2026-67285
Joomla Extension - joomshaper.com - Unauthenticated arbitrary local PHP file inclusion in SP Page Builder < 6.8.0 - An unauthenticated attacker can perform incl
Joomla Extension - joomshaper.com - Unauthenticated arbitrary local PHP file inclusion in SP Page Builder < 6.8.0 - An unauthenticated attacker can perform includes to arbitrary PHP files that are accessible by the system.
References
This critical severity vulnerability with a CVSS score of 9.2 was published on 2026-08-12 via NVD.
Risk Timeline
CVE Disclosed2026-08-12 · -1 days ago
Remediation Resources
Analysis & PoC
www.joomshaper.com/page-builder
vulnfeed aggregates 10467 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.