CVE-2026-21625

Source
https://cve.org/CVERecord?id=CVE-2026-21625
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-21625.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-21625
Published
2026-01-16T15:15:55.017Z
Modified
2026-03-13T03:56:10.571066Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

User provided uploads to the Easy Discuss component for Joomla aren't properly validated. Uploads are purely checked by file extensions, no mime type checks are happening.

References

Affected packages

Git /

Affected ranges

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-21625.json"
unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "1.0.0"
            },
            {
                "last_affected": "5.0.15"
            }
        ]
    }
]