CVE-2026-88852
Received Received - Intake

Privileged Stored XSS in Snippets Joomla Extension

Vulnerability report for CVE-2026-88852, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-14

Last updated on: 2026-09-14

Assigner: Joomla! Project

Description

Joomla Extension - regularlabs.com - Privileged stored XSS via url option in Snippets Free extension for Joomla < 7.0.0, Snippets Pro extension for Joomla < 11.0.0 - Snippets substitutes variable values supplied by an article tag into saved Snippet content. The affected versions do not consider the article author's trust level. A lower-privileged author can therefore place an unsafe value into a security-sensitive position chosen by the trusted Snippet author.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-14
Last Modified
2026-09-14
Generated
2026-09-14
AI Q&A
2026-09-14
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 2 associated CPEs
Vendor Product Version / Range
regularlabs snippets_free to 7.0.0 (exc)
regularlabs snippets_pro to 11.0.0 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-79 The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This is a privileged stored Cross-Site Scripting (XSS) vulnerability in Joomla extensions called Snippets Free and Snippets Pro. It affects versions before 7.0.0 for the Free version and before 11.0.0 for the Pro version. The issue occurs because Snippets substitutes variable values from article tags into saved Snippet content without considering the article author's trust level. A lower-privileged author can inject unsafe values into positions controlled by a trusted Snippet author.

Impact Analysis

An attacker with lower privileges could exploit this to inject malicious scripts into web pages. These scripts could steal user data, session cookies, or perform actions on behalf of users. It may lead to unauthorized access, data breaches, or defacement of the Joomla site. The impact depends on the privileges of the compromised account and the site's configuration.

Compliance Impact

This vulnerability could lead to data breaches, which may violate GDPR's data protection requirements or HIPAA's safeguards for protected health information. Organizations could face fines, legal penalties, or reputational damage if exploited. Compliance may require patching, incident response, and user notification depending on the breach's scope.

Mitigation Strategies

Update the Snippets Free extension to version 7.0.0 or later and the Snippets Pro extension to version 11.0.0 or later. Remove or disable vulnerable versions if updates are unavailable.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-88852. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart