CVE-2026-76571
published 2026-08-22CVE-2026-76571: Joomla Extension - fabrikar.com - Unauthenticated SQL injection in list filter condition parameter in Fabrik < 4.7.2 - The condition parameter passed to a list…
PriorityP264critical9.3CVSS 4.0
AVNACLATNPRNUINVCHVIHVAHSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
EPSS
0.42%
33.8th percentile
Joomla Extension - fabrikar.com - Unauthenticated SQL injection in list filter condition parameter in Fabrik < 4.7.2 - The condition parameter passed to a list filter is concatenated verbatim into the WHERE clause built by getFilterQuery(). An unauthenticated attacker can supply arbitrary SQL through the filter condition, giving full read of the database.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fabrikar.com | fabrik_extension_for_joomla | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
fabrikar Fabrik Extension up to 4.7.2 Filter getFilterQuery condition sql injection
vuldb·2026-08-24·CVSS 9.3
CVE-2026-76571 [CRITICAL] fabrikar Fabrik Extension up to 4.7.2 Filter getFilterQuery condition sql injection
A vulnerability, which was classified as critical, was found in fabrikar Fabrik Extension up to 4.7.2. Affected by this issue is the function getFilterQuery of the component Filter. Such manipulation of the argument condition leads to sql injection.
This vulnerability is referenced as CVE-2026-76571. It is possible to launch the attack remotely. No exploit is available.
GHSA
Joomla Extension - fabrikar.com - Unauthenticated SQL injection in list filter condition parameter in Fabrik < 4.7.3 - The condition parameter passed to a list filter is concatenated verbatim into the
ghsa_unreviewed·2026-08-22
CVE-2026-76571 [CRITICAL] CWE-89 Joomla Extension - fabrikar.com - Unauthenticated SQL injection in list filter condition parameter in Fabrik < 4.7.3 - The condition parameter passed to a list filter is concatenated verbatim into the
Joomla Extension - fabrikar.com - Unauthenticated SQL injection in list filter condition parameter in Fabrik < 4.7.3 - The condition parameter passed to a list filter is concatenated verbatim into the WHERE clause built by getFilterQuery(). An unauthenticated attacker can supply arbitrary SQL through the filter condition, giving full read of the database.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-08-22
Published