CVE-2026-48908 CRITICAL

JoomShaper SP Page Builder Vulnerability
Generated: 10 Oct 2026 20:37 • CVE Threat Intelligence

Description

JoomShaper SP Page Builder contains an unrestricted upload of file with dangerous type vulnerability that allows unauthenticated users to upload arbitrary files, ultimately resulting in the upload and execution of PHP code.

9.8
CVSS CRITICAL

Details

Published
07 Jul 2026 00:00
Modified
N/A
Source
CIRCL
Vendor
JoomShaper
Product
SP Page Builder
Fix Version
Vendor Patch / Mitigation Available