CVE-2026-63683 PUBLISHED

Joomla Extension - regularlabs.com - Client IP spoofing vulnerability in Regular Labs conditions manager

Assigner: Joomla
Reserved: 17.07.2026 Published: 22.07.2026 Updated: 23.07.2026

Joomla Extension - regularlabs.com - Client IP spoofing vulnerability in Regular Labs conditions manager - IP and GeoIP conditions trusted spoofable forwarded headers, allowing remote clients to bypass location-based rules.

Product Status

Vendor regularlabs.com
Product Advanced Module Manager extension for Joomla
Versions Default: unaffected
  • Version 1.0.0-11.0.1 is affected
Vendor regularlabs.com
Product Conditional Content extension for Joomla
Versions Default: unaffected
  • Version 1.0.0-6.0.0 is affected
Vendor regularlabs.com
Product Content Templater Pro extension for Joomla
Versions Default: unaffected
  • Version 1.0.0-13.0.0 is affected
Vendor regularlabs.com
Product ReReplacer extension Pro for Joomla
Versions Default: unaffected
  • Version 1.0.0-15.0.3 is affected

References

Problem Types

  • CWE-290 Authentication Bypass by Spoofing CWE