CyberRota Analysis
AI-GeneratedA cross-site scripting (XSS) vulnerability exists in the file management view of com_templates due to insufficient input escaping. This flaw could allow an attacker to inject malicious scripts, potentially compromising user sessions or redirecting users to malicious sites. Organizations utilizing com_templates should prioritize remediation to protect against potential exploitation of this vulnerability.
CVE
CVE-2026-48950
Severity
MEDIUM
CVSS
6.1
EPSS
0.15%
Original NVD Description
Lack of escaping leads to an XSS vulnerability in the file management view of com_templates.
Related CVEs
Other vulnerabilities affecting the same vendor(s)