Unauthenticated Row Reordering in Fabrik Extension by Fabrikar
CVE-2026-76601
6.9MEDIUM
What is CVE-2026-76601?
The Fabrik extension for Joomla is susceptible to an unauthenticated row reordering vulnerability, where the order plugin fails to conduct proper access checks. This oversight allows unauthorized users to manipulate the arrangement of data rows without authentication, potentially leading to unauthorized access to sensitive data or disruption of the normal operations of the application. It is crucial for users of Fabrik versions prior to 4.7.2 to assess their exposure to this vulnerability and take appropriate measures to secure their systems.
Affected Version(s)
Fabrik extension for Joomla 1.0.0-4.7.1
