CVE-2026-48897 | Joomla CMS up to 5.4.5/6.1.0 2FA improper authentication
A vulnerability was found in Joomla CMS up to 5.4.5/6.1.0 and classified as critical. This impacts an unknown function of the component 2FA. Such manipulation leads to improper authentication.
This vulnerability is documented as CVE-2026-48897. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.