Vulnerability Description
Joomla Extension - joomlaeventmanager.net - Attendee lists readable by any logged-in user in Joomla Event Manager < 5.0.1 - A non-manager can therefore read attendee names, usernames, registration dates and statuses for events they do not manage, including lists belonging to unpublished events.
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-77990?
CVE-2026-77990 is a documented vulnerability. Joomla Extension - joomlaeventmanager.net - Attendee lists readable by any logged-in user in Joomla Event Manager < 5.0.1 - A non-manager can therefore read attendee names, usernames, registration dat...
How severe is CVE-2026-77990?
CVSS scoring is not yet available for CVE-2026-77990. Check NVD for updates.
Is there a patch for CVE-2026-77990?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.