CVE List

CVE-2026-21625

Critical 8.8

User provided uploads to the Easy Discuss component for Joomla aren't properly validated. Uploads are purely checked by file extensions, no mime type checks are happening.

Published January 16, 2026.

Affected software

Get alerts for Stackideas Easydiscuss

Reference links