Joomla의 iCagenda와 Balbooa에서 제로데이 취약점이 발견되었습니다.
미국 사이버 보안 및 인프라 보안 기관(CISA)이 Joomla의 iCagenda 및 Balbooa 확장 프로그램에서 최대 심각도의 보안 취약점을 보고했습니다. 이 두 취약점은 CVSS 점수 시스템에서 10.0으로 평가되며, 현재 제로데이 악용이 발생하고 있습니다. CISA는 이 취약점들을 알려진 악용 취약점 목록에 추가했습니다.
Zero-day vulnerabilities found in Joomla's iCagenda and Balbooa extensions.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has reported maximum-severity security flaws in Joomla's iCagenda and Balbooa extensions. Both vulnerabilities are rated 10.0 on the CVSS scoring system and have been exploited as zero-day vulnerabilities in the wild. CISA has added these vulnerabilities to its Known Exploited Vulnerabilities catalog.