CVE-2026-65760: Joomshaper.com Easy Store Extension For Joomla
Critical severity, CVSS 9.2. EPSS: 0.4% chance of exploitation in the next 30 days.
Joomla Extension - joomshaper.com - cross-customer order and personal information disclosure in Easy Store extension 1.0.0-2.0.1 - Improper access checks allow logged in users to retreive order and customer information of any order in the system.
Affected products
- Joomshaper.com Easy Store Extension For Joomla: version 1.0.0-2.0.1 only
Published 2026-07-23. Last modified 2026-07-23.