CVE-2026-48952

Vulnérabilités

CVE-2026-48952

XSS in com_installer

MEDIUM Joomla CMS Source officielle

Lack of escaping leads to an XSS vulnerability in the update list view of com_installer.

Source officielle Description du Joomla Security Centre (Joomla).

— Moyenne
SourceSévérité d'origineCVSS
Joomla Security CentreModerate —
CERT-FR (ANSSI)— —
Produit
Joomla CMS
Corrigée dans
5.4.7, 6.1.2
Publiée
07/07/2026
Modifiée
08/07/2026
  • 4.0.0 – 5.4.6
  • 6.0.0 – 6.1.1
  • Joomla Security Centre Source officielle Avis vu
  • CERT-FR (ANSSI) Avis vu

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Source ajoutée : certfr26/09/2026 09:28 UTC
  2. Détectée via joomla26/09/2026 09:26 UTC