VYPR

com_templates

by Joomla

CVEs (2)

  • CVE-2020-8420HigJan 28, 2020
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in Joomla! before 3.9.15. A missing CSRF token check in the LESS compiler of com_templates causes a CSRF vulnerability.

  • CVE-2026-48950MedJul 7, 2026
    risk 0.00cvss 6.1epss 0.00

    Lack of escaping leads to an XSS vulnerability in the file management view of com_templates.