Unauthenticated Comment Modification in Joomla Extension from Fabrikar
CVE-2026-76609
6.9MEDIUM
What is CVE-2026-76609?
The Joomla extension from Fabrikar allows unauthenticated users to modify comments due to insufficient access control in the onUpdateComment endpoint. This flaw impacts versions of Fabrik prior to 4.7.2, exposing installations to unauthorized changes, which could undermine the integrity of user-generated content.
Affected Version(s)
Fabrik extension for Joomla 1.0.0-4.7.1
