Millions of California-bought cars can be hijacked via Bluetooth
A vulnerability in Joomla extensions, specifically iCagenda and Balbooa Forms, is being exploited to compromise websites running the CMS. Attackers are leveraging these flaws to gain unauthorized access to vulnerable sites, potentially impacting a million websites globally. This highlights the ongoing risk associated with outdated or unpatched third-party components.
A vulnerability exists within Joomla extensions, namely iCagenda and Balbooa Forms, allowing attackers to exploit weaknesses and compromise websites utilizing the CMS. These flaws enable attackers to gain unauthorized access to vulnerable sites, potentially impacting a million websites worldwide. The Register reports that attackers are actively exploiting these vulnerabilities to gain control of affected sites. This incident underscores the importance of regularly updating Joomla and its extensions to mitigate security risks. The vulnerability has been identified and is actively being addressed by the Joomla community and security researchers.