Authenticated Arbitrary File Upload in Gridbox by Balbooa
CVE-2026-65885
9.4CRITICAL
What is CVE-2026-65885?
The Gridbox extension by Balbooa contains a vulnerability that allows authenticated attackers to upload arbitrary files to the server. This flaw may lead to unauthorized actions and potential remote code execution when combined with other vulnerabilities, posing a significant risk to the integrity and security of the application.
Affected Version(s)
Gridbox extension for Joomla 1.0.0-2.20.1
