Joomla Extension - joomshaper.com - unauthenticated payment/order forgery in Easy Store extension 1.0.0-2.0.1 - Critical order and payment information, including states, are processed from client side input, enabling unauthenticated attackers to manipulate payment and order states of arbritrary orders.
Metrics
Affected Vendors & Products
References
History
Tue, 28 Jul 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Joomshaper.com
Joomshaper.com easy Store Extension For Joomla |
|
| Vendors & Products |
Joomshaper.com
Joomshaper.com easy Store Extension For Joomla |
Thu, 23 Jul 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Joomla Extension - joomshaper.com - unauthenticated payment/order forgery in Easy Store extension 1.0.0-2.0.1 - Critical order and payment information, including states, are processed from client side input, enabling unauthenticated attackers to manipulate payment and order states of arbritrary orders. | |
| Title | Joomla Extension - joomshaper.com - unauthenticated payment/order forgery in Easy Store extension 1.0.0-2.0.1 | |
| Weaknesses | CWE-284 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Joomla
Published: 2026-07-23T16:42:54.627Z
Updated: 2026-08-12T13:57:43.201Z
Reserved: 2026-07-22T20:46:13.953Z
Link: CVE-2026-65759
Updated: 2026-07-23T19:05:58.752Z
Status : Deferred
Published: 2026-07-23T17:16:30.190
Modified: 2026-07-23T20:17:22.667
Link: CVE-2026-65759
No data.