WISSENSWERT

Das Internet ist dynamisches Wissen. Es gilt : Existenz durch Informationspräsenz.
40%-55% aller Internetsurfer sind heute mit mobilen Endgeräten im Netz.
Websites sind eine jederzeit leicht verfügbare Quelle an Information für Interessenten. Nutzen Sie
Es spielt eben doch eine Rolle, ob Ihr Unternehmen auch im Internet vertreten ist oder nicht!
Minimalism is more than leaving stuff out, in fact ... minimalism is a state of mind.
Joomla! - CMS für einfache Webseiten bis zu komplexen E-Commerce oder Social Marketing Sites für M
Sich Informationen aus dem Netz zu beschaffen ist gewöhnliche Alltagshandlung ... Stehen Sie berei
Websites - Kein Medium sonst, bietet ein derart breites Spektrum an Kommunikations­kanälen
Websites sind schlichtweg essenzieller und integraler Bestandteil moderner Kommunikation ...

Joomla! Developer News

  1. Joomla 6.2 Alpha 3

    The Joomla! Project is pleased to announce the availability ofJoomla 6.2 Alpha 3 for testing.

  2. Joomla 6.2 Alpha 2

    The Joomla! Project is pleased to announce the availability ofJoomla 6.2 Alpha 2 for testing.

  3. Joomla 6.2 Alpha 1

    The Joomla! Project is pleased to announce the availability of the firstJoomla 6.2 Alpha 1 for testing.

  4. Joomla 6.1 Beta 3

    The Joomla! Project is pleased to announce the availability of Joomla 6.1 Beta 3 for testing.

  5. The Joomla project is introducing a redesigned workflow for handling feature requests - an approach aimed at making the process more transparent, more predictable, and easier to manage for both maintainers and the wider community. This new system is currently in a trial phase, and community feedback will play a key role in refining it further.

Joomla! Security Announcements

  • [20260810] - Core - Unrestricted uploads of SHTML files
    17 August 2026
    • Project: Joomla!
    • SubProject: CMS
    • Impact: High
    • Severity: Low
    • Probability: Low
    • Versions: 1.0.0-5.4.7,6.0.0-6.1.2
    • Exploit type: Unrestricted Upload of File with Dangerous Type
    • Reported Date: 2026-07-29
    • Fixed Date: 2026-08-18
    • CVE Number: CVE-2026-73373

    Description

    The default list of dangerous files did not include SHTML files. On servers that executed these files, that could lead to code execution.

    Affected Installs

    Joomla! CMS versions 1.0.0-5.4.7, 6.0.0-6.1.2

    Solution

    Upgrade to version 5.4.8, 6.1.3

    Contact

    The JSST at the Joomla! Security Centre.

    Reported By:  Valentin Lobstein (Chocapikk)
  • [20260809] - Core - Improper ACL checks when injection schema.org contact data
    17 August 2026
    • Project: Joomla!
    • SubProject: CMS
    • Impact: Low
    • Severity: Low
    • Probability: Low
    • Versions: 5.1.0-5.4.7,6.0.0-6.1.2
    • Exploit type: Incorrect Access Control
    • Reported Date: 2026-07-31
    • Fixed Date: 2026-08-18
    • CVE Number: CVE-2026-73372

    Description

    An improper access check injects contact information for unaccessible contact items into schema.org snippets.

    Affected Installs

    Joomla! CMS versions 5.1.0-5.4.7, 6.0.0-6.1.2

    Solution

    Upgrade to version 5.4.8, 6.1.3

    Contact

    The JSST at the Joomla! Security Centre.

    Reported By:  Stefan Wendhausen
  • [20260808] - Core - Improper ACL checks for batch copy actions
    17 August 2026
    • Project: Joomla!
    • SubProject: CMS
    • Impact: Low
    • Severity: Low
    • Probability: Low
    • Versions: 4.0.0-5.4.7,6.0.0-6.1.2
    • Exploit type: Incorrect Access Control
    • Reported Date: 2026-07-28
    • Fixed Date: 2026-08-18
    • CVE Number: CVE-2026-73371

    Description

    An improper access check allows unauthorized users to perform copy batch operations on uneditable items.

    Affected Installs

    Joomla! CMS versions 4.0.0-5.4.7, 6.0.0-6.1.2

    Solution

    Upgrade to version 5.4.8, 6.1.3

    Contact

    The JSST at the Joomla! Security Centre.

    Reported By:  Sabuhi Mammadov
  • [20260807] - Core - MFA Authentication Bypass
    17 August 2026
    • Project: Joomla!
    • SubProject: CMS
    • Impact: High
    • Severity: Moderate
    • Probability: Moderate
    • Versions: 4.0.0-5.4.7,6.0.0-6.1.2
    • Exploit type: Authentication Bypass
    • Reported Date: 2026-07-25
    • Fixed Date: 2026-08-18
    • CVE Number: CVE-2026-73337

    Description

    Insufficient state checks lead to a vector that allows to bypass 2FA checks.

    Affected Installs

    Joomla! CMS versions 4.0.0-5.4.7, 6.0.0-6.1.2

    Solution

    Upgrade to version 5.4.8, 6.1.3

    Contact

    The JSST at the Joomla! Security Centre.

    Reported By:  bloman