SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-65946

MEDIUM · CVSS 6.1 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-07-29 · Last synced 2026-08-28

CyberRota Analysis

AI-Generated

The Joomla Extension from rolandd.com is vulnerable to cross-site scripting (XSS) attacks through AJAX endpoint handlers in versions prior to 9.11.0. This vulnerability could allow an attacker to execute arbitrary scripts in the context of a user's session, potentially leading to data theft or session hijacking. Web administrators using this extension should prioritize updating to the latest version to mitigate the risk.

CVE
CVE-2026-65946
Severity
MEDIUM
CVSS
6.1
EPSS
0.15%

Original NVD Description

Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI < 9.11.0

Related CVEs

Other vulnerabilities affecting the same vendor(s)