JoomShaper SP Page Builder Vulnerability
JoomShaper SP Page Builder contains an unrestricted upload of file with dangerous type vulnerability that allows unauthenticated users to upload arbitrary files, ultimately resulting in the upload and execution of PHP code.
CVSS Score
9.8
CRITICAL
Published
07 Jul 2026 00:00
Modified
N/A
Vendor
JoomShaper
Product
SP Page Builder
Source
CIRCL
Affected Versions
Fix
Vendor Patch / Mitigation Available
Weaknesses (CWE)
CWE-434
Affected Systems
JoomShaper
SP Page Builder
JoomShaper
SP Page Builder
External Links
KEV Status
Known Exploited Vulnerability