๐Ÿ” CVE Alert

CVE-2026-85188

UNKNOWN 0.0

Joomla Extension - regularlabs.com - Database data disclosure in Advanced Module Manager (Free, Pro) < 12.1.0, Conditional Content (Free, Pro) < 8.0.0, Content Templater (Pro) < 14.2.0, ReReplacer (Pro) < 16.2.0 for Joomla

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Joomla Extension - regularlabs.com - Database data disclosure in Advanced Module Manager (Free, Pro) < 12.1.0, Conditional Content (Free, Pro) < 8.0.0, Content Templater (Pro) < 14.2.0, ReReplacer (Pro) < 16.2.0 for Joomla - The Conditions editor creates a default Condition Set name from the item to which the set is linked. The affected code accepts the database table and label-column names from the request. Although these names are quoted as SQL identifiers, they are not restricted to the tables and columns used by supported Regular Labs integrations. An attacker can therefore select a valid but unrelated database field. This is an authorization failure rather than SQL injection.

CWE CWE-200
Vendor regularlabs.com
Product advanced module manager (free, pro) extension for joomla
Published Sep 14, 2026
Last Updated Sep 14, 2026
Stay Ahead of the Next One

Get instant alerts for regularlabs.com advanced module manager (free, pro) extension for joomla

Be the first to know when new unknown vulnerabilities affecting regularlabs.com advanced module manager (free, pro) extension for joomla are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

regularlabs.com / Advanced Module Manager (Free, Pro) extension for Joomla
9.0.0-12.0.4
regularlabs.com / Conditional Content (Free, Pro) extension for Joomla
4.0.0-7.1.0
regularlabs.com / Content Templater (Pro) extension for Joomla
11.0.0-14.1.0
regularlabs.com / ReReplacer (Pro) extension for Joomla
12.2.0-16.1.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
regularlabs.com: https://www.regularlabs.com/