Joomla · Joomla! · CVE-2026-90916
**Name of the Vulnerable Software and Affected Versions**
Joomla! Core versions 4.0.0 through 5.4.8
Joomla! Core versions 6.0.0 through 6.1.3
**Description**
An improper Access Control List (ACL) check in the content history comparison view allows unauthorized users to view content that should be inaccessible. ACL is a mechanism used to manage permissions and restrict access to specific resources based on user roles.
**Recommendations**
Update Joomla! Core versions 4.0.0 through 5.4.8 to a version newer than 5.4.8.
Update Joomla! Core versions 6.0.0 through 6.1.3 to a version newer than 6.1.3.