CVE-2026-73327
Joomla 6.1.1 Zip Slip Path Traversal via com_joomlaupdate extract.php
CVSS Score
7.6
EPSS Score
0.0%
EPSS Percentile
0th
Joomla 6.1.1 contains a path traversal vulnerability in the com_joomlaupdate extension that allows a Super User to be induced into extracting a crafted archive containing directory traversal sequences or absolute paths in ZIP entry filenames. Attackers can supply malicious ZIP entry names with parent-directory segments or absolute paths to the extract.php extraction routine, causing files to be written outside the intended destination root and enabling persistent remote code execution via planted PHP files.
| CWE | CWE-22 |
| Vendor | joomla |
| Product | joomla! cms |
| Ecosystems | |
| Industries | WebMedia |
| Published | Aug 12, 2026 |
Stay Ahead of the Next One
Get instant alerts for joomla joomla! cms
Be the first to know when new high vulnerabilities affecting joomla joomla! cms are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H Attack Vector
Network
Attack Complexity
High
Privileges Required
High
User Interaction
Required
Scope
Changed
Confidentiality
High
Integrity
High
Availability
High
Affected Versions
Joomla / Joomla! CMS
0 โค 6.1.1
References
github.com: https://github.com/joomla/joomla-cms github.com: https://github.com/joomla/joomla-cms/pull/48057 github.com: https://github.com/joomla/joomla-cms/commit/9678a171d37e1e10ca75c9124bdafe20fe14fa5b vulncheck.com: https://www.vulncheck.com/advisories/joomla-zip-slip-path-traversal-via-com-joomlaupdate-extract-php
Credits
Jashn Wahi