๐Ÿ” CVE Alert

CVE-2026-75953

HIGH 7.5

Joomla Extension - cmsjunkie.com - Open mail relay in J-BusinessDirectory < 6.2.3

CVSS Score
7.5
EPSS Score
0.1%
EPSS Percentile
4th

Joomla Extension - cmsjunkie.com - Open mail relay in J-BusinessDirectory < 6.2.3 - Recipient address was taken from the request (contact_id_offer / contact_id_event) instead of the server-side offer/event record, so mail could be sent to an arbitrary address.

CWE CWE-201
Vendor cmsjunkie.com
Product j-businessdirectory extension for joomla
Published Aug 19, 2026
Last Updated Aug 26, 2026
Stay Ahead of the Next One

Get instant alerts for cmsjunkie.com j-businessdirectory extension for joomla

Be the first to know when new high vulnerabilities affecting cmsjunkie.com j-businessdirectory extension for joomla are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

cmsjunkie.com / J-BusinessDirectory extension for Joomla
1.0.0-6.2.2

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
cmsjunkie.com: https://www.cmsjunkie.com/