LOWVulnerability
CVE-2026-77996
Joomla Extension - yootheme.com - Authenticated, privileged stored XSS in YOOtheme Pro 1.0.0-5.0.41 - Lack of escaping in the location custom field lead to a XSS vector.
Properties
- cve_id
- CVE-2026-77996
- signal_observed_at
- 2026-09-23T13:25:53+00:00
- published_at
- 2026-08-25T12:16:25.973
- last_modified
- 2026-09-23T13:10:00.153
Related Entities (2)
DESCRIBED_BY (1)
→[Source]NVD
HAS_WEAKNESS (1)
→[Weakness]Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Explore deeper with Ninja Signal's threat intelligence graph