Improper access control in Joomla! - CVE-2026-73372
Published: August 18, 2026
Vulnerability details
The vulnerability allows a remote user to disclose contact information from inaccessible contact items.
The vulnerability exists due to improper access control in schema.org contact data handling when generating schema.org snippets. A remote user can access content that injects contact information for inaccessible contact items to disclose contact information from inaccessible contact items.