WISSENSWERT

40%-55% aller Internetsurfer sind heute mit mobilen Endgeräten im Netz.
Joomla! - CMS für einfache Webseiten bis zu komplexen E-Commerce oder Social Marketing Sites für M
Minimalism is more than leaving stuff out, in fact ... minimalism is a state of mind.
Websites sind schlichtweg essenzieller und integraler Bestandteil moderner Kommunikation ...
Websites - Kein Medium sonst, bietet ein derart breites Spektrum an Kommunikations­kanälen
Es spielt eben doch eine Rolle, ob Ihr Unternehmen auch im Internet vertreten ist oder nicht!
Das Internet ist dynamisches Wissen. Es gilt : Existenz durch Informationspräsenz.
Websites sind eine jederzeit leicht verfügbare Quelle an Information für Interessenten. Nutzen Sie
Sich Informationen aus dem Netz zu beschaffen ist gewöhnliche Alltagshandlung ... Stehen Sie berei

Joomla! Developer News

  1. Joomla 6.2 Alpha 2

    The Joomla! Project is pleased to announce the availability ofJoomla 6.2 Alpha 2 for testing.

  2. Joomla 6.2 Alpha 1

    The Joomla! Project is pleased to announce the availability of the firstJoomla 6.2 Alpha 1 for testing.

  3. Joomla 6.1 Beta 3

    The Joomla! Project is pleased to announce the availability of Joomla 6.1 Beta 3 for testing.

  4. The Joomla project is introducing a redesigned workflow for handling feature requests - an approach aimed at making the process more transparent, more predictable, and easier to manage for both maintainers and the wider community. This new system is currently in a trial phase, and community feedback will play a key role in refining it further.

  5. Joomla 6.1 Beta 2

    The Joomla! Project is pleased to announce the availability of Joomla 6.1 Beta 2 for testing.

Joomla! Security Announcements

  • [20260712] - Core - Incorrect Access Control in com_fields webservice endpoints
    07 July 2026
    • Project: Joomla!
    • SubProject: CMS
    • Impact: Moderate
    • Severity: Moderate
    • Probability: Low
    • Versions: 4.0.0-5.4.6, 6.0.0-6.1.1
    • Exploit type: Incorrect Access Control
    • Reported Date: 2026-05-05
    • Fixed Date: 2026-07-07
    • CVE Number: CVE-2026-48958

    Description

    An improper access check allows unauthorized users to create custom fields via webservices endpoints.

    Affected Installs

    Joomla! CMS versions 4.0.0-5.4.6, 6.0.0-6.0.0-6.1.1

    Solution

    Upgrade to version 5.4.7, 6.1.2

    Contact

    The JSST at the Joomla! Security Centre.

    Reported By:  Federico Brasili
  • [20260711] - Core - Incorrect Access Control in com_privacy webservice endpoints
    07 July 2026
    • Project: Joomla!
    • SubProject: CMS
    • Impact: Low
    • Severity: Moderate
    • Probability: Low
    • Versions: 4.0.0-5.4.6, 6.0.0-6.1.1
    • Exploit type: Incorrect Access Control
    • Reported Date: 2026-06-12
    • Fixed Date: 2026-07-07
    • CVE Number: CVE-2026-48957

    Description

    An improper access check allows unauthorized users to access com_privacy datasets.

    Affected Installs

    Joomla! CMS versions 4.0.0-5.4.6, 6.0.0-6.0.0-6.1.1

    Solution

    Upgrade to version 5.4.7, 6.1.2

    Contact

    The JSST at the Joomla! Security Centre.

    Reported By:  Himanshu Anand
  • [20260710] - Core - Incorrect Access Control in com_modules
    07 July 2026
    • Project: Joomla!
    • SubProject: CMS
    • Impact: Moderate
    • Severity: Moderate
    • Probability: Low
    • Versions: 4.0.0-5.4.6, 6.0.0-6.1.1
    • Exploit type: Incorrect Access Control
    • Reported Date: 2026-05-22
    • Fixed Date: 2026-07-07
    • CVE Number: CVE-2026-48956

    Description

    An improper access check allows users to display a list of modules in the frontend.

    Affected Installs

    Joomla! CMS versions 4.0.0-5.4.6, 6.0.0-6.0.0-6.1.1

    Solution

    Upgrade to version 5.4.7, 6.1.2

    Contact

    The JSST at the Joomla! Security Centre.

    Reported By:  Warisjeet Singh (sin99xx)
  • [20260709] - Core - Incorrect Access Control in com_workflow
    07 July 2026
    • Project: Joomla!
    • SubProject: CMS
    • Impact: Moderate
    • Severity: Moderate
    • Probability: Low
    • Versions: 6.0.0-6.1.1
    • Exploit type: Incorrect Access Control
    • Reported Date: 2026-04-22
    • Fixed Date: 2026-07-07
    • CVE Number: CVE-2026-48955

    Description

    An improper access check allows unauthorized users to access workflow stage and transition information.

    Affected Installs

    Joomla! CMS versions 6.0.0-6.1.1

    Solution

    Upgrade to version 6.1.2

    Contact

    The JSST at the Joomla! Security Centre.

    Reported By:  廖双