CVE-2026-71573

Vulnérabilités

CVE-2026-71573

Improper CORS origin validation

MEDIUM Joomla CMS Source officielle

An improper implementation prevented configured CORS origins from being properly validated in CORS requests.

Source officielle Description du Joomla Security Centre (Joomla).

6.9 Moyenne · CVSS 4.0

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Score retenu : NVD

SourceSévérité d'origineCVSS
Joomla Security CentreModerate —
NVDMEDIUM 6.9 (v4.0)
CERT-FR (ANSSI)— —
Produit
Joomla CMS
Corrigée dans
5.4.8, 6.1.3
Publiée
17/08/2026
Modifiée
03/09/2026
CWE
CWE-93
  • 4.0.0 – 5.4.7
  • 6.0.0 – 6.1.2
  • Joomla Security Centre Source officielle Avis vu
  • NVD CNA Joomla CVE-2026-71573 vu
  • CERT-FR (ANSSI) Avis vu

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Source ajoutée : nvd26/09/2026 09:34 UTC
  2. Source ajoutée : certfr26/09/2026 09:28 UTC
  3. Détectée via joomla26/09/2026 09:26 UTC