{"id":"CVE-2026-66916","title":"Joomla Extension - joomgalleryfriends.net - Password-Protected Category Bypass via JSON Format in JoomGallery < 4.4.0- An unauthenticated access control bypass exists in JoomGallery's category JSON view","summary":"Joomla Extension - joomgalleryfriends.net - Password-Protected Category Bypass via JSON Format in JoomGallery < 4.4.0- An unauthenticated access control bypass exists in JoomGallery's category JSON view. When a gallery category is protec…","severity":"none","cwe":["CWE-284"],"published":"2026-08-22","updated":"2026-08-22","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-66916","references":[{"url":"https://www.joomgalleryfriends.net/","label":"security@joomla.org"}],"tags":["nvd","exploit-available"],"ingestedAt":"2026-08-23T04:42:13.941Z","epss":0.00509,"epssPercentile":0.42452,"exploits":{"github":1,"githubRepos":["https://github.com/toanln-cov/CVE-2026-66916"],"checkedAt":"2026-09-24T07:53:12.852Z"},"exploitAvailable":true,"slug":"CVE-2026-66916","body":"## Overview\n\nJoomla Extension - joomgalleryfriends.net - Password-Protected Category Bypass via JSON Format in JoomGallery < 4.4.0- An unauthenticated access control bypass exists in JoomGallery's category JSON view. When a gallery category is protected with a password, the HTML view correctly enforces the password gate - but the JSON view ( format=json ) skips this check entirely.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":15,"depthScoreParts":{"impact":2.8,"likelihood":0.1,"exploitation":12,"ransomware":0},"changes":[{"seq":5412,"id":"CVE-2026-66916","ts":1788887281393,"field":"exploit_available","old":"false","new":"true"},{"seq":4295,"id":"CVE-2026-66916","ts":1788886395263,"field":"exploit_available","old":"true","new":"false"},{"seq":3044,"id":"CVE-2026-66916","ts":1788883059020,"field":"exploit_available","old":"false","new":"true"},{"seq":2073,"id":"CVE-2026-66916","ts":1788882463742,"field":"exploit_available","old":"true","new":"false"},{"seq":1146,"id":"CVE-2026-66916","ts":1788881900189,"field":"exploit_available","old":"false","new":"true"}]}