Medium severityNVD Advisory· Published Aug 14, 2026· Updated Aug 26, 2026
CVE-2026-67366
CVE-2026-67366
Description
Joomla Extension - icagenda.com - CSRF on frontend registration actions in iCagenda < 2.0.0-4.0.11 - Multiple state changing operations in the frontend are callable without a CSRF token check.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1Patches
Vulnerability mechanics
References
1News mentions
2- Joomla: 17 Vulnerabilities Disclosed, Including Critical Code & SQL Injection FlawsVypr Intelligence · Aug 19, 2026
- Joomla Extensions: Two Critical SQLi and Two Medium Flaws Disclosed TogetherVypr Intelligence · Aug 17, 2026