Description
Joomla! Core - [20260801] - Response header injection in download views in Joomla 3.0.0-5.4.7, 6.0.0-6.1.2 - Lack of output processing allowed a header injection in the multiple download views, leading to reflected file download / content-type confusion.
Published: 2026-08-18
Score: 4.8 Medium
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A lack of output processing in Joomla! download views lets an attacker inject arbitrary HTTP response headers, creating a reflected file download or content‑type confusion scenario. The injected headers can mislead browsers or downstream systems into treating the response as a different file type or causing a misleading download prompt, potentially enabling phishing or download‑based attacks.

Affected Systems

The vulnerability affects Joomla! CMS versions 3.0.0 through 5.4.7 and 6.0.0 through 6.1.2, as distributed by the Joomla! Project.

Risk and Exploitability

The CVSS score of 4.8 indicates moderate severity. No EPSS value is available, so the exploitation probability cannot be precisely quantified. Because the issue is not listed in the CISA KEV catalog, publicly known exploits are not reported. The likely attack vector involves crafting a download URL that contains malicious header content, which requires that the target site runs one of the affected Joomla! versions and that the download view is accessible.

Generated by OpenCVE AI on August 18, 2026 at 17:46 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Joomla! CMS to a patched release that removes the vulnerable download view code.
  • Deploy a web application firewall or mod_security rule set to detect and block HTTP header injection attempts on download URLs.
  • Restrict the download view to authenticated users only by adjusting Joomla! permission settings or by editing the router configuration to filter out untrusted input.

Generated by OpenCVE AI on August 18, 2026 at 17:46 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 18 Aug 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 18 Aug 2026 16:30:00 +0000

Type Values Removed Values Added
Description Joomla! Core - [20260801] - Response header injection in download views in Joomla 3.0.0-5.4.7, 6.0.0-6.1.2 - Lack of output processing allowed a header injection in the multiple download views, leading to reflected file download / content-type confusion.
Title Joomla! Core - [20260801] - Response header injection in download views in Joomla 3.0.0-5.4.7, 6.0.0-6.1.2
Weaknesses CWE-93
References
Metrics cvssV4_0

{'score': 4.8, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:N/VI:N/VA:N/SC:N/SI:L/SA:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: Joomla

Published:

Updated: 2026-08-18T19:27:26.449Z

Reserved: 2026-08-07T12:50:15.221Z

Link: CVE-2026-71572

cve-icon Vulnrichment

Updated: 2026-08-18T19:04:49.946Z

cve-icon NVD

Status : Received

Published: 2026-08-18T17:17:02.113

Modified: 2026-08-18T17:17:02.113

Link: CVE-2026-71572

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-18T18:00:04Z

Weaknesses
  • CWE-93

    Improper Neutralization of CRLF Sequences ('CRLF Injection')