CVE-2026-56292Disclosure(acymailing / acymailing)

MEDIUMCVSS 7.5 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch acymailing acymailing systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

Joomla Extension - acymailing.com - SQL Injection in AcyMailing extension < 10.11.1 - A SQLi vulnerability in AcyMailing component < 10.11.1 for Joomla was discovered. Exploiting this flaw can lead to unauthorized database access and data leakage.

4.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-89

Priority

MEDIUM

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • acymailing

Threat summary

  • Public PoC and exploit tooling are both present
  • Patch or workaround signal is available
  • 7 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Exploit tool or code specified in 2 signals
  • PoC mentioned or linked in 2 signals
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 7 signals
  • Disclosure: 4 classified signals
  • General: 1 classified signal
  • Peaked 3d ago at 3 mentions (2026-07-09); latest day: 1
  • 7 total mentions across 4 days

Affected systems

Vendors
Products
acymailing

Deep dive

Activity timeline7 mentions / 4d
01223Mentions · 2026-07-09: 3Mentions · 2026-07-13: 1Mentions · 2026-08-14: 2Mentions · 2026-09-08: 1PoC Mentioned / Linked · 2026-08-14: 2Exploit Tool / Code · 2026-08-14: 2Patch / Workaround · 2026-07-09: 1Technical Details · 2026-07-09: 3Technical Details · 2026-07-13: 1Technical Details · 2026-08-14: 2Technical Details · 2026-09-08: 107-0907-1308-1409-08
Signal classification4 categories
Disclosure
457.1%
General
114.3%
Exploit
114.3%
PoC
114.3%
Referenced assets7 URLs
Classification over time
DateTotalLabels
2026-07-093
Disclosure3
2026-07-131
General1
2026-08-142
Exploit1PoC1
2026-09-081
Disclosure1
Full discourse7 posts
  • dbugs@ptdbugs
    PoC

    A PoC/exploit has been discovered for vulnerability CVE-2026-56292 Vendor: Joomla Product: AcyMailing extension for Joomla (http://acymailing.com) Description: Joomla Extension - http://acymailing.com - SQL Injection in AcyMailing extension < 10.11.1 - A SQLi vulnerability in AcyMailing component < 10.11.1 for Joomla was discovered. Exploiting this flaw can lead to unauthorized database access and data leakage. Link: https://github.com/nullwhisper/cve-2026-56292-acymailing-sqli #dbugs_vuln

    Post summary

    A PoC/exploit for CVE-2026-56292—a SQL injection in AcyMailing extension <10.11.1—is available on GitHub, but no evidence of active exploitation or patches is provided.

    0301701.1K
    3.6K followersView on X
  • pdnuclei-bot@pdnuclei_bot
    Disclosure

    🚨 CVE-2026-56292 - critical 🚨 AcyMailing &lt; 10.11.1 - Unauthenticated SQL Injection &gt; AcyMailing component for Joomla &lt;10.11.1 contains a sql injection caused by improper ... 👾 https://cloud.projectdiscovery.io/library/CVE-2026-56292 @pdnuclei #NucleiTemplates #cve

    Post summary

    The tweet announces a critical CVE-2026-56292 vulnerability in the AcyMailing component for Joomla prior to version 10.11.1, highlighting an unauthenticated SQL injection flaw.

    010105614
    1.3K followersView on X
  • ThreatWire@ThreatWire_
    Exploit

    🚨 PoC RELEASED: Public exploit code is now available for CVE-2026-56292, a SQL Injection in the Joomla AcyMailing extension. The flaw affects AcyMailing < 10.11.1 and can allow unauthorized database access and data leakage. 🔗 https://github.com/nullwhisper/cve-2026-56292-acymailing-sqli #Joomla #AcyMailing #CVE #SQLi #PoC #CyberSecurity #WebSecurity #Infosec

    Post summary

    Public exploit code for CVE‑2026‑56292, a SQL injection in Joomla’s AcyMailing extension, has been released and is available via GitHub, enabling unauthorized database access and data leakage.

    00062829
    1.7K followersView on X
  • DailyCVE@dailycve
    General

    🔴 Joomla AcyMailing, SQL Injection, #CVE-2026-56292 (Critical) -DC-Jul2026-888 https://dailycve.com/joomla-acymailing-sql-injection-cve-2026-56292-critical-dc-jul2026-888/

    Post summary

    A short tweet links to a dailycve article announcing a critical SQL injection vulnerability (CVE-2026‑56292) in Joomla AcyMailing, but provides no further details on PoCs, exploits, active use, patches, or corrections.

    0000044
    218 followersView on X
  • Upwind Security MDR@UpwindMDR
    Disclosure

    🚨 CRITICAL - SQL Injection in Joomla AcyMailing Extension (CVE-2026-56292) A SQL injection flaw has been identified in the AcyMailing extension for Joomla, impacting its database query handling within the extension’s request processing. The root cause is improper input validation/parameterization, allowing attacker-controlled input to be concatenated into SQL statements. An attacker can exploit this remotely by sending crafted requests to vulnerable AcyMailing endpoints, typically without authentication depending on site configuration and exposed components. Successful exploitation can enable unauthorized database access, leading to sensitive data disclosure and broader compromise through stolen credentials or application data. 👉 Affected: AcyMailing 1.0–10.11.0 | Upgrade to 10.11.1 or later

    Post summary

    A new SQL injection vulnerability (CVE‑2026‑56292) was identified in Joomla’s AcyMailing extension, allowing remote unauthenticated attackers to access sensitive data; a patch is available—upgrade to version 10.11.1 or later.

    00000111
    246 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-56292 A SQLi vulnerability in AcyMailing component &lt; 10.11.1 for Joomla was discovered. Exploiting this flaw can lead to unauthorized database access and data leakage. https://www.cve.org/CVERecord?id=CVE-2026-56292 ----- Traducción: CVE-2026-56292 Una vulner… http://infoflow.cloud`

    Post summary

    The post announces a new SQL injection flaw (CVE‑2026‑56292) in AcyMailing versions below 10.11.1 for Joomla, noting the risk of unauthorized database access and data leakage.

    0000044
    91 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-56292 A SQLi vulnerability in AcyMailing component &lt; 10.11.1 for Joomla was discovered. Exploiting this flaw can lead to unauthorized database access and data leakage. https://www.cve.org/CVERecord?id=CVE-2026-56292

    Post summary

    A SQL injection vulnerability in AcyMailing components older than 10.11.1 for Joomla has been disclosed, potentially allowing unauthorized database access and data leakage, with no PoC, exploit tool, active exploitation, or patch mentioned.

    000001.0K
    57.8K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appacymailingacymailing-joomla\!-

Explore more