CVE-2018-15881: Joomla!

High severity, CVSS 7.5. EPSS: 2.2% chance of exploitation in the next 30 days.

An issue was discovered in Joomla! before 3.8.12. Inadequate checks regarding disabled fields can lead to an ACL violation.

Affected products

  • Joomla! Joomla!: before 3.8.12 (fixed in 3.8.12)

Published 2018-08-29. Last modified 2026-06-17.