CVE-2026-66491EPSS p23.7%

CVE-2026-66491CVE-2026-66491

Description

Joomla Extension - phoca.cz - Arbitrary File Read in Phoca Commander 1.0.0-6.1.3 - Improper limitation of paths in the getSource function lead to an arbitrary file read vulnerability.

Scoring

EPSS0.31% probability of exploitation · percentile 23.7% · 2026-08-08T12:02:54Z
Last modified2026-08-07
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.