CVE-2025-50058

All FrameworksJoomlaCWE-79CVE-2025-50058

CVE-2025-50058

State: PUBLISHED · Published: 2025-07-18 · Updated: 2025-07-20 · Assigner: Joomla
Description
A stored XSS vulnerability in the RSDirectory! component 1.0.0-2.2.8 Joomla was discovered. The issue allows remote authenticated attackers to inject arbitrary web script or HTML via the review reply component.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2025/50xxx/CVE-2025-50058.json