CVE-2026-65759

Published: Lug 23, 2026 Last Modified: Lug 23, 2026
ExploitDB:
Other exploit source:
Google Dorks:

Description

Joomla Extension - joomshaper.com - unauthenticated payment/order forgery in Easy Store extension 1.0.0-2.0.1 - Critical order and payment information, including states, are processed from client side input, enabling unauthenticated attackers to manipulate payment and order states of arbritrary orders.