LOWVulnerability

CVE-2026-77996

Joomla Extension - yootheme.com - Authenticated, privileged stored XSS in YOOtheme Pro 1.0.0-5.0.41 - Lack of escaping in the location custom field lead to a XSS vector.

Properties

cve_id
CVE-2026-77996
signal_observed_at
2026-09-23T13:25:53+00:00
published_at
2026-08-25T12:16:25.973
last_modified
2026-09-23T13:10:00.153

Related Entities (2)

DESCRIBED_BY (1)

[Source]NVD

HAS_WEAKNESS (1)

[Weakness]Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-77996 — Ninja Signal Threat Intelligence | Ninja Signal