Reflected XSS Vulnerability in Phoca Guestbook by Phoca
CVE-2026-65762
5.1MEDIUM
What is CVE-2026-65762?
The Phoca Guestbook Joomla extension suffers from a reflected XSS vulnerability due to improper validation of user inputs. As a result, an attacker could exploit this flaw to execute arbitrary JavaScript code in the context of a vulnerable user session, potentially leading to unauthorized actions on behalf of the user or theft of sensitive information.
Affected Version(s)
Phoca Guestbook extension for Joomla 1.0.0-6.1.0
