The Joomla extension Balbooa Forms is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full RCE.
PoC: CVE-2026-56291_PoC
The Joomla extension Balbooa Forms is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full RCE.
PoC: CVE-2026-56291
Mendeteksi versi (passive detection) & Exploitation CVE POC
PoC: CVE-2026-56291.yaml
nuclei template for CVE-2026-56291
PoC: CVE-2026-56291
Balbooa Forms (com_baforms) < 2.4.1 — Unauthenticated File Upload to RCE via form.uploadAttachmentFile | CVSS 9.8 | CISA KEV
Get alerted for CVEs like this
Register your stack and get notified within minutes when a matching CVE drops.
Start monitoring free