Mmastodon TechnologyCybersecurity first seen 11 h ago, last 11 h ago, peak #12
High-severity CSRF flaw disclosed in Joomla Gridbox extension
Original: ๐จ EUVD-2026-94933 ๐ Score: 8.7/10 (CVSS v3.1) ๐ฆ Product: Gridbox extension for Joomla ๐ข Vendor: balbooa.com ๐ Updated: 2
A cross-site request forgery vulnerability has been recorded in the Gridbox extension for Joomla, published by vendor Balbooa. Tracked as EUVD-2026-94933, the flaw affects the extension's language installation feature and carries a CVSS v3.1 score of 8.7 out of 10, placing it in the high-severity range. The entry was updated on 8 October 2026. Site administrators running Gridbox are being urged to check for a patched version, since CSRF bugs of this kind can let attackers trigger actions on behalf of logged-in users.
Why now: Security feeds are highlighting a newly updated high-severity vulnerability affecting Joomla sites that use the popular Gridbox extension.
Evidence
API: https://socialmediatrends-api.osmike.com/v1/trends/1492792