Project Subscriptions
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.regularlabs.com/ |
|
Mon, 14 Sep 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 14 Sep 2026 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Regularlabs.com
Regularlabs.com modals Pro Extension For Joomla |
|
| Vendors & Products |
Regularlabs.com
Regularlabs.com modals Pro Extension For Joomla |
Mon, 14 Sep 2026 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Joomla Extension - regularlabs.com - Privileged stored XSS via event handler option in Modals Pro extension for Joomla < 17.0.0 - Modals Pro intentionally supports JavaScript Events such as on-open and on-closed. Affected versions do not distinguish trusted extension configuration from event code supplied in ordinary article content. A lower-privileged author can therefore use a documented executable feature which should be reserved for trusted authors. | |
| Title | Joomla Extension - regularlabs.com - Privileged stored XSS via event handler option in Modals Pro extension for Joomla < 17.0.0 | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Joomla
Published:
Updated: 2026-09-15T04:41:10.488Z
Reserved: 2026-09-10T10:27:00.130Z
Link: CVE-2026-88853
Updated: 2026-09-14T14:56:26.688Z
Status : Received
Published: 2026-09-14T07:17:24.383
Modified: 2026-09-14T15:17:12.013
Link: CVE-2026-88853
No data.
OpenCVE Enrichment
Updated: 2026-09-14T22:15:10Z