EIP-2026-108901
PRE-CVEJoomla! Component YOOtheme Warp5 - 'yt_color' Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-108901. PoCs published by andresg888.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in the Warp5 component for Joomla! by injecting malicious script tags via the 'yt_color' GET parameter. The PoC includes example URLs that trigger arbitrary JavaScript execution in the context of the affected site.
Description
Joomla! Component YOOtheme Warp5 - 'yt_color' Cross-Site Scripting
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in the Warp5 component for Joomla! by injecting malicious script tags via the 'yt_color' GET parameter. The PoC includes example URLs that trigger arbitrary JavaScript execution in the context of the affected site.