CVE-2026-65882: Joomdle.com Joomdle Component For Joomla

Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.

Joomla Extension - joomdle.com - Reflected XSS vulnerability in Joomdle < 3.1.1 - The goto url parameter of the moodle wrapper endpoint allowed a reflected XSS vector.

Affected products

  • Joomdle.com Joomdle Component For Joomla: version 0.7.0-3.0.1 only

Published 2026-07-28. Last modified 2026-07-28.