CVE-2026-48896 | Joomla CMS up to 5.4.5/6.1.0 2FA improper authentication
A vulnerability has been found in Joomla CMS up to 5.4.5/6.1.0 and classified as critical. This affects an unknown function of the component 2FA. This manipulation causes improper authentication.
This vulnerability is registered as CVE-2026-48896. Remote exploitation of the attack is possible. No exploit is available.
The affected component should be upgraded.