CVE-2026-66916
Received Received - Intake

Password-Protected Category Bypass in JoomGallery

Vulnerability report for CVE-2026-66916, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-22

Last updated on: 2026-08-22

Assigner: Joomla! Project

Description

Joomla Extension - joomgalleryfriends.net - Password-Protected Category Bypass via JSON Format in JoomGallery < 4.4.0- An unauthenticated access control bypass exists in JoomGallery's category JSON view. When a gallery category is protected with a password, the HTML view correctly enforces the password gate - but the JSON view ( format=json ) skips this check entirely.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-22
Last Modified
2026-08-22
Generated
2026-08-22
AI Q&A
2026-08-22
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
joomgalleryfriends joomgallery to 4.4.0 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-284 The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is an unauthenticated access control bypass in JoomGallery's category JSON view. When a gallery category is password-protected, the HTML view enforces the password requirement, but the JSON view (using format=json) skips this check entirely, allowing unauthorized access to protected content.

Detection Guidance

Check if JoomGallery versions older than 4.4.0 are installed. Inspect network traffic for JSON format requests (format=json) to password-protected categories. Verify if unauthorized access to category data is possible via API calls.

Impact Analysis

An attacker could exploit this to bypass password protection on JoomGallery categories, gaining unauthorized access to sensitive or private content without authentication. This could lead to data exposure or privacy violations.

Compliance Impact

This vulnerability could violate compliance requirements like GDPR or HIPAA by exposing protected data to unauthorized users. Organizations using JoomGallery may face legal or regulatory penalties due to insufficient access controls.

Mitigation Strategies

Update JoomGallery to version 4.4.0 or later. Disable JSON format access for password-protected categories if possible. Review access logs for suspicious JSON requests to restricted areas.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-66916. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart