NONE · 0

CVE-2026-77996

Joomla Extension - yootheme.com - Authenticated, privileged stored XSS in YOOtheme Pro 1.0.0-5.0.41 - Lack of escaping in the location custom field lead to a XSS vector.

Vulnerability Description

Joomla Extension - yootheme.com - Authenticated, privileged stored XSS in YOOtheme Pro 1.0.0-5.0.41 - Lack of escaping in the location custom field lead to a XSS vector.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2026-77996?

CVE-2026-77996 is a documented vulnerability. Joomla Extension - yootheme.com - Authenticated, privileged stored XSS in YOOtheme Pro 1.0.0-5.0.41 - Lack of escaping in the location custom field lead to a XSS vector.

How severe is CVE-2026-77996?

CVSS scoring is not yet available for CVE-2026-77996. Check NVD for updates.

Is there a patch for CVE-2026-77996?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.