Joomla Extension Vulnerability in icagenda by Joomla
CVE-2026-71570
5.1MEDIUM
What is CVE-2026-71570?
The icagenda extension for Joomla contains a vulnerability that allows backend operators with restricted access to the com_icagenda component to enumerate user profiles. This issue arises in versions prior to 2.0.0-4.0.11, potentially exposing sensitive user data and compromising the integrity of the application. Admins are advised to review their access controls and update to the latest version to mitigate this risk.
Affected Version(s)
iCagenda extension for Joomla 4.0.0-4.0.11
