SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-78073

MEDIUM · CVSS 5.3 EPSS 0.32%

Source: NVD + CISA KEV + EPSS · Published 2026-08-28 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

The All Video Share Joomla extension versions 1.0.0 to 4.5.0 are vulnerable to reflected cross-site scripting (XSS) due to inadequate input escaping for various user-supplied data. This vulnerability could allow attackers to execute arbitrary scripts in the context of a user's browser, potentially leading to session hijacking or data theft. Joomla administrators and web developers using this extension should prioritize patching or mitigating this issue to protect their users.

CVE
CVE-2026-78073
Severity
MEDIUM
CVSS
5.3
EPSS
0.32%

Original NVD Description

Joomla Extension - mrvinoth.com - Reflected XSS in All Video Share 1.0.0-4.5.0 - Various user supplied inputs lacked escaping, leading to reflected XSS vectors