An improper validation of the search parameter of the com_media files API endpoint leads to a path traversal vulnerability.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 26 May 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An improper validation of the search parameter of the com_media files API endpoint leads to a path traversal vulnerability. | |
| Title | Joomla! Core - [20260510] - Path traversal in com_media webservice endpoint | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Joomla
Published:
Updated: 2026-05-26T16:45:02.051Z
Reserved: 2026-04-12T05:13:31.714Z
Link: CVE-2026-40384
No data.
Status : Received
Published: 2026-05-26T17:16:39.503
Modified: 2026-05-26T17:16:39.503
Link: CVE-2026-40384
No data.
OpenCVE Enrichment
No data.
Weaknesses