Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-60028

UNKNOWN NVD
CVSS Score 0
Severity UNKNOWN
Published Jul 20, 2026
Vendor unknown

Description

The Joomla extension Quix Page Builder Pro is vulnerable to an authenticated stored XSS vulnerability. Authenticated builder user could inject scripts, fires for any visitor or admin viewing the page. Unescaped output + unsanitised SVG.

References