CVE-2026-67284
Joomla Extension - tabaoca.org - Improper ACL checks allow file operations in Cotton Cloud < 2.0.2
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Joomla Extension - tabaoca.org - Improper ACL implementation allows file operations in Cotton Cloud < 2.0.3 - Authenticated users could perform various file-related operations (read, delete, overwrite, re-assign permissions) on files owned by other users.
| CWE | CWE-284 |
| Vendor | tabaoca.org |
| Product | cotton cloud extension for joomla |
| Published | Aug 12, 2026 |
Stay Ahead of the Next One
Get instant alerts for tabaoca.org cotton cloud extension for joomla
Be the first to know when new unknown vulnerabilities affecting tabaoca.org cotton cloud extension for joomla are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
tabaoca.org / Cotton Cloud extension for Joomla
1.0.0-2.0.2
Credits
Phil Taylor