Joomla · Joomla! · CVE-2026-71573
**Name of the Vulnerable Software and Affected Versions**
Joomla! Core versions 4.0.0 through 5.4.7
Joomla! Core versions 6.0.0 through 6.1.2
**Description**
An improper implementation of Cross-Origin Resource Sharing (CORS) prevents configured origins from being properly validated during CORS requests. CORS is a mechanism that allows restricted resources on a web page to be requested from another domain outside the domain from which the first resource was served.
**Recommendations**
Update Joomla! Core versions 4.0.0 through 5.4.7 to a version newer than 5.4.7.
Update Joomla! Core versions 6.0.0 through 6.1.2 to a version newer than 6.1.2.