Joomla 扩展 - joomshaper.com - Helix Ultimate < 2.2.10 中的内容欺骗导致的特权文件上传绕过漏洞 此前,图片上传功能仅校验文件扩展名和基本的文件大小参数。因此,非图片文件若伪装成栅格图像扩展名(如 .jpg、.png 等)即可成功上传。新版本增加了严格的 MIME 类型验证,并引入 GD 库的二进制栅格图像解码(通过 函数),以确保无效或格式错误的图像被严格拒绝(失败关闭,fail-closed)。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| joomshaper.com | Helix Ultimate extension for Joomla | 1.0-2.2.9 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-78077 | 8.6 HIGH | Joomla Extension - joomshaper.com - Stored Cross-Site Scripting (XSS) in MegaMenu Layout |
| CVE-2026-78079 | 5.3 MEDIUM | Joomla Extension - joomshaper.com - Privileged File Upload Bypass via Content Spoofing in |
| CVE-2026-78076 | 5.1 MEDIUM | Joomla Extension - joomshaper.com - Broken Access Control & Missing Authorization in MegaM |
| CVE-2026-78075 | 5.1 MEDIUM | Joomla Extension - joomshaper.com - Broken Object-Level Authorization in Blog Image Deleti |
No comments yet