Reflected XSS Vulnerability in Phoca Maps by Joomla Extension Vendor
CVE-2026-65763
5.1MEDIUM
What is CVE-2026-65763?
The Phoca Maps Joomla extension is susceptible to a reflected Cross-Site Scripting (XSS) vulnerability due to improper validation of user inputs. This flaw can be exploited by attackers to inject malicious scripts into webpages viewed by unsuspecting users. When users interact with the compromised application, they may unknowingly execute the injected scripts, potentially leading to unauthorized access and data theft.
Affected Version(s)
Phoca Maps extension for Joomla 1.0.0-6.0.9
