CVE-2026-60034
Joomla Extension - themexpert.com - Authenticated stored XSS in JMedia Extension < 1.6.0
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
The Joomla extension JMedia is vulnerable to a stored XSS vulnerability. Unsanitised SVG uploads served without nosniff, leading to stored/reflected XSS.
| CWE | CWE-79 |
| Vendor | themexpert.com |
| Product | jmedia extension for joomla |
| Published | Jul 20, 2026 |
| Last Updated | Jul 21, 2026 |
Stay Ahead of the Next One
Get instant alerts for themexpert.com jmedia extension for joomla
Be the first to know when new unknown vulnerabilities affecting themexpert.com jmedia extension for joomla are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
themexpert.com / JMedia extension for Joomla
1.0-1.5.4