logo

iCagenda and Balbooa Forms Joomla Flaws Exploited as Zero-Days

ID: 05100358-8744-5573-8764-dd4be9bde005

STIX ID: report--05100358-8744-5573-8764-dd4be9bde005

Feed Name: CosmicBytez Labs

Threat Score
90/100

Date Published: 2026-07-13

Date Updated: 2026-07-15

...
...

CISA has added two maximum-severity zero-day vulnerabilities in Joomla extensions (iCagenda and Balbooa Forms) to its Known Exploited Vulnerabilities catalog, confirming active exploitation; the report urges immediate auditing of Joomla sites, applying patches or uninstalling affected plugins, deploying WAF protections, and monitoring logs/indicators for compromise using the provided detection commands.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.