CVE-2026-77996
UNKNOWN
NVD
CVSS Score
0
Severity
UNKNOWN
Published
Aug 25, 2026
Vendor
unknown
Description
Joomla Extension - yootheme.com - Authenticated, privileged stored XSS in YOOtheme Pro 1.0.0-5.0.41 - Lack of escaping in the location custom field lead to a XSS vector.