Lack of output escaping leads to a XSS vector in the content history component.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 26 May 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Lack of output escaping leads to a XSS vector in the content history component. | |
| Title | Joomla! Core - [20260503] - XSS in com_contenthistory | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Joomla
Published:
Updated: 2026-05-26T16:42:58.268Z
Reserved: 2026-03-06T04:55:46.056Z
Link: CVE-2026-30894
No data.
Status : Undergoing Analysis
Published: 2026-05-26T17:16:30.903
Modified: 2026-05-26T19:06:58.447
Link: CVE-2026-30894
No data.
OpenCVE Enrichment
Updated: 2026-05-26T19:00:15Z
Weaknesses