What is CVE-2026-65762?
This is a Reflected XSS vulnerability discovered in the Phoca Guestbook (5.0.0-6.1.0) extension for Joomla. Due to improper validation of user inputs, an attacker can execute malicious scripts in a user's browser via a crafted link. It is recommended to update the plugin to the latest version.
Azərbaycanca: Bu, Joomla üçün Phoca Guestbook (5.0.0-6.1.0) plagini tərkibində aşkarlanmış Reflected XSS zəifliyidir. İstifadəçi girişlərinin düzgün yoxlanılmaması səbəbindən təcavüzkar xüsusi hazırlanmış keçid vasitəsilə istifadəçi brauzerində zərərli skript icra edə bilər. Plagini ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-79; shared vendor: phoca.cz
FAQ2
Which versions of the Phoca Guestbook plugin are affected by the vulnerability?
The vulnerability affects Phoca Guestbook versions 5.0.0 through 6.1.0.
How can I protect against this Reflected XSS vulnerability?
It is recommended to update the plugin to the latest version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.