NEUCISA Warns of Actively Exploited Joomla JCE Vulnerability with PHP Code Execution17. June 2026CybersecurityShare on:CVE-2026-48907 (CVSS 10.0) in Joomla JCE is being actively exploited and enables PHP code execution through insufficient access control. Share on: