CISA Warns of Actively Exploited Joomla JCE Flaw Allowing PHP Code Execution
2026-06-17T07:24:12Z•8bb5ab35682ef12eb4a752dba11dbc0f32d13a327aaec0f6d8383de2282d2e1d
CISA-KEVactive-exploitationai-securityandroid-malwarebackdoorcloud-securitycriticalmalwarepackage-hijackphishingprivilege-escalationremote-code-executionsupply-chain-compromisethreat-actorsvulnerability
What happened
Roundup of 15–17 Jun 2026 security news: multiple high-impact vulnerabilities and active exploitations plus widespread malware and supply‑chain abuse. Notable items include CISA adding Joomla Widget Factory JCE flaw CVE-2026-48907 (CVSS 10.0) to KEV; active exploitation of Fortinet FortiSandbox flaws (CVE-2026-39813, CVE-2026-39808, CVE-2026-25089); critical Splunk unauthenticated RCE (CVE-2026-20253, CVSS 9.8); PAN-OS GlobalProtect authentication bypass (CVE-2026-0257); Cisco Catalyst SD‑WAN Manager issue (CVE-2026-20262); LiteSpeed cPanel privilege escalation (CVE-2026-54420); and numerous重大
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 8bb5ab35682ef12eb4a752dba11dbc0f32d13a327aaec0f6d8383de2282d2e1d
- Enrichment time
- 2026-06-17T07:24:12Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.