XSS Vulnerability in Joomla Extension by Rolandd
CVE-2026-65946

Currently unrated

Key Information:

Vendor
CVE Published:
29 July 2026

What is CVE-2026-65946?

The ro CSVI Joomla extension by Rolandd is vulnerable to Cross-Site Scripting (XSS) through its AJAX endpoint handlers. This vulnerability allows attackers to inject malicious scripts by exploiting improperly handled user inputs. Users of versions prior to 9.11.0 are particularly at risk. It is crucial for site administrators to update to the latest version to mitigate potential security threats and protect sensitive data from unauthorized access.

Affected Version(s)

RO CSVI extension for Joomla 1.0.0-9.11.0

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.