CVE-2026-25901

Lack of output escaping leads to a XSS vector in the multilingual associations component.

medium 6.1 CVSS 3.1
Published: May 26, 2026
Modified: May 27, 2026
Vendor: Joomla
Product: Joomla\!