{"id":"CVE-2026-78081","title":"Joomla Extension - j2commerce.com - Missing CSRF protection on cart, checkout and myprofile controllers in J2Store 1.0.0-3.3.2, 4.0.0-4.0.22, 4.1.0-4.1.7 - A forged request riding a victim's active checkout session could silently overwri…","summary":"Joomla Extension - j2commerce.com - Missing CSRF protection on cart, checkout and myprofile controllers in J2Store 1.0.0-3.3.2, 4.0.0-4.0.22, 4.1.0-4.1.7 - A forged request riding a victim's active checkout session could silently overwri…","severity":"high","cvss":7.1,"cvssVector":"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N","cwe":["CWE-352"],"vendor":"j2commerce.com","product":"J2Store extension for Joomla","affected":["j2store_extension_for_joomla 1.0.0-3.3.22","j2store_extension_for_joomla 4.0.0-4.0.22","j2store_extension_for_joomla 4.1.0-4.1.7"],"published":"2026-09-15","updated":"2026-09-16","sourceUpdated":"2026-09-16T19:28:06.713","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-78081","references":[{"url":"https://www.j2commerce.com/","label":"security@joomla.org"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2026-09-15T19:31:58.310526Z"},"cvssSource":"cna","ingestedAt":"2026-09-15T19:42:58.806Z","epss":0.00151,"epssPercentile":0.04618,"slug":"CVE-2026-78081","body":"## Overview\n\nJoomla Extension - j2commerce.com - Missing CSRF protection on cart, checkout and myprofile controllers in J2Store 1.0.0-3.3.2, 4.0.0-4.0.22, 4.1.0-4.1.7 - A forged request riding a victim's active checkout session could silently overwrite the billing or shipping address before order confirmation — the most consequential sub-case, since it opens the door to redirecting a paid order's goods to an attacker-controlled address — or tamper with a saved profile address via `saveAddress()`. As before, each forged request executes with only the victim's own session privileges, so there is no cross-account data access.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":39,"depthScoreParts":{"impact":39.1,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}