CVE Watchtower ← Back to CVE ListCVE-2026-73337NVDVulnerability SummaryJoomla! Core - [20260807] - MFA Authentication Bypass in Joomla 4.0.0-5.4.7 and 6.0.0-6.1.2 - Insufficient state checks lead to a vector that allows to bypass 2FA checks.Severity LevelUNKNOWNPublished DateAug 18, 2026Last ModifiedAug 19, 2026Exploitation StatusNo confirmed exploitation yetEPSS Score (30-Day)0.34%ProbabilityRoot Weakness (CWE)N/AExternal Referenceshttps://www.joomla.org/https://developer.joomla.org/security-centre/1074-20260807-core-mfa-authentication-bypass.html