Skip to main content
Navigated to Security — Briefings — 2026 06 widget factory joomla content editor imp
highVulnerability

Widget Factory Joomla Content Editor Improper Access Control Vulnerability

Published June 16, 2026Axus Networks Threat Intelligence

Summary

Widget Factory Joomla Content Editor contains an improper access control vulnerability which could allow for upload and execution of PHP code via the creation of new editor profiles for unauthenticated users.

Source: CISA KEV