Medium severity5.4NVD Advisory· Published Jan 16, 2026· Updated Jun 17, 2026
CVE-2026-21624
CVE-2026-21624
Description
Lack of input filterung leads to a persistent XSS vulnerability in the user avatar text handling of the Easy Discuss component for Joomla.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:stackideas:easydiscuss:*:*:*:*:*:joomla\!:*:*+ 1 more
- cpe:2.3:a:stackideas:easydiscuss:*:*:*:*:*:joomla\!:*:*range: >=1.0.0,<=5.0.15
- (no CPE)
- Stackideas.com/EasyDiscuss extension for Joomlav5Range: 1.0.0-5.0.15
Patches
Vulnerability mechanics
References
1- stackideas.com/easydiscussnvdThird Party Advisory
News mentions
0No linked articles in our index yet.