Incorrect authorization in Joomla! - CVE-2026-92223
Published: September 30, 2026
Vulnerability details
The vulnerability allows a remote user to update the workflow stage of inaccessible content.
The vulnerability exists due to improper access control in the workflow stage change functionality when updating workflow stages. A remote user can update the workflow stage of inaccessible content to update the workflow stage of inaccessible content.