CVE-2026-56292: Acymailing
High severity, CVSS 7.5. EPSS: 1.4% chance of exploitation in the next 30 days.
Joomla Extension - acymailing.com - SQL Injection in AcyMailing extension < 10.11.1 - A SQLi vulnerability in AcyMailing component < 10.11.1 for Joomla was discovered. Exploiting this flaw can lead to unauthorized database access and data leakage.
Affected products
- Acymailing Acymailing: from 6.0.0, before 10.11.1 (fixed in 10.11.1)
Published 2026-07-09. Last modified 2026-07-23.