Joomla · Joomla! · CVE-2026-73372
**Name of the Vulnerable Software and Affected Versions**
Joomla! Core versions 5.1.0 through 5.4.7
Joomla! Core versions 6.0.0 through 6.1.2
**Description**
An improper access control check allows the injection of contact information for inaccessible contact items into schema.org snippets. Access Control List (ACL) is a mechanism used to manage permissions and restrict access to specific resources based on user roles.
**Recommendations**
Update Joomla! Core versions 5.1.0 through 5.4.7 to a version newer than 5.4.7.
Update Joomla! Core versions 6.0.0 through 6.1.2 to a version newer than 6.1.2.