Vulnerability Description
Joomla Extension - yootheme.com - Authenticated, privileged stored XSS in YOOtheme Pro 1.0.0-5.0.41 - Lack of escaping in the location custom field lead to a XSS vector.
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-77996?
CVE-2026-77996 is a documented vulnerability. Joomla Extension - yootheme.com - Authenticated, privileged stored XSS in YOOtheme Pro 1.0.0-5.0.41 - Lack of escaping in the location custom field lead to a XSS vector.
How severe is CVE-2026-77996?
CVSS scoring is not yet available for CVE-2026-77996. Check NVD for updates.
Is there a patch for CVE-2026-77996?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.