PT-2026-43287 · Joomla · Joomla! Cms

Mohamed Elabbas

+1

·

Published

2026-05-26

·

Updated

2026-05-26

·

CVE-2026-25900

CVSS v4.0

6.9

Medium

VectorAV:N/AC:L/AT:N/PR:H/UI:P/VC:H/VI:L/VA:L/SC:N/SI:N/SA:N
Lack of output escaping leads to a XSS vector in the feed modules.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2026-25900

Affected Products

Joomla! Cms