High severity7.5NVD Advisory· Published Feb 6, 2026· Updated Jun 17, 2026
CVE-2026-21626
CVE-2026-21626
Description
Access control settings for forum post custom fields are not applied to the JSON output type, leading to an ACL violation vector an information disclosure
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:stackideas:easydiscuss:*:*:*:*:*:joomla\!:*:*Range: >=1.0.0,<=5.0.15
- Stackideas.com/EasyDiscuss extension for Joomlav5Range: 1.0.0-5.0.15
Patches
Vulnerability mechanics
References
1- stackideas.com/easydiscussnvdProduct
News mentions
0No linked articles in our index yet.