dbugs[verified]@ptdbugsPoC
A PoC/exploit for CVE-2026-56292—a SQL injection in AcyMailing extension <10.11.1—is available on GitHub, but no evidence of active exploitation or patches is provided.
ThreatWire[verified]@ThreatWire_Exploit
Public exploit code for CVE‑2026‑56292, a SQL injection in Joomla’s AcyMailing extension, has been released and is available via GitHub, enabling unauthorized database access and data leakage.
Upwind Security MDR[verified]@UpwindMDRDisclosure
A new SQL injection vulnerability (CVE‑2026‑56292) was identified in Joomla’s AcyMailing extension, allowing remote unauthenticated attackers to access sensitive data; a patch is available—upgrade to version 10.11.1 or later.
pdnuclei-bot@pdnuclei_botDisclosure
The tweet announces a critical CVE-2026-56292 vulnerability in the AcyMailing component for Joomla prior to version 10.11.1, highlighting an unauthenticated SQL injection flaw.
DailyCVE@dailycveGeneral
A short tweet links to a dailycve article announcing a critical SQL injection vulnerability (CVE-2026‑56292) in Joomla AcyMailing, but provides no further details on PoCs, exploits, active use, patches, or corrections.
Infoflowcloud@infoflowcloudDisclosure
The post announces a new SQL injection flaw (CVE‑2026‑56292) in AcyMailing versions below 10.11.1 for Joomla, noting the risk of unauthorized database access and data leakage.
CVE@CVEnewDisclosure
A SQL injection vulnerability in AcyMailing components older than 10.11.1 for Joomla has been disclosed, potentially allowing unauthorized database access and data leakage, with no PoC, exploit tool, active exploitation, or patch mentioned.