Description
Joomla Extension - yootheme.com - Unauthenticated arbitrary directory listing via the Gallery element in Zoo < 4.1.66.
Published: 2026-08-21
Score: 6.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Directory Listing Disclosure
Action: Patch
AI Analysis

Impact

An unauthenticated attacker can trigger the Gallery element of the Zoo extension in Joomla to retrieve an arbitrary directory listing. This permissive behavior reveals file names and paths, potentially exposing confidential or configuration files. The flaw is a directory traversal and reading weakness classified as CWE-22.

Affected Systems

The vulnerability affects the Zoo extension for Joomla, provided by yootheme.com, in all releases prior to version 4.1.66. No specific sub‑versions are listed; any installed Zoo extension version below 4.1.66 is considered exposed.

Risk and Exploitability

The CVSS base score is 6.9, indicating medium severity. No EPSS data is available, and the issue is not listed in CISA's KEV catalog. Exploitation requires only an unauthenticated web request to the targeted Joomla site, making the attack likely when the site is publicly reachable. The impact is limited to information disclosure but may aid subsequent attacks by revealing sensitive file structures.

Generated by OpenCVE AI on August 21, 2026 at 13:38 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the Zoo extension to version 4.1.66 or later to remove the directory listing flaw.
  • If an upgrade cannot occur immediately, disable the Gallery element or enforce a web‑server directory‑listing restriction (e.g., via .htaccess or server configuration directives).
  • Harden file permissions on the Joomla installation and restrict access to hidden or system directories as an additional safeguard.

Generated by OpenCVE AI on August 21, 2026 at 13:38 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

References
Link Providers
https://www.yootheme.com/ cve-icon cve-icon
History

Fri, 21 Aug 2026 21:45:00 +0000

Type Values Removed Values Added
First Time appeared Yootheme.com
Yootheme.com zoo Extension For Joomla
Vendors & Products Yootheme.com
Yootheme.com zoo Extension For Joomla

Fri, 21 Aug 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 21 Aug 2026 12:30:00 +0000

Type Values Removed Values Added
Description Joomla Extension - yootheme.com - Unauthenticated arbitrary directory listing via the Gallery element in Zoo < 4.1.66.
Title Joomla Extension - yootheme.com - Unauthenticated arbitrary directory listing via the Gallery element in Zoo < 4.1.66
Weaknesses CWE-22
References
Metrics cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Yootheme.com Zoo Extension For Joomla
cve-icon MITRE

Status: PUBLISHED

Assigner: Joomla

Published:

Updated: 2026-08-21T19:20:00.136Z

Reserved: 2026-08-19T14:48:01.169Z

Link: CVE-2026-76611

cve-icon Vulnrichment

Updated: 2026-08-21T16:11:35.903Z

cve-icon NVD

Status : Deferred

Published: 2026-08-21T13:18:19.850

Modified: 2026-08-26T16:35:20.160

Link: CVE-2026-76611

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-21T21:15:35Z

Weaknesses
  • CWE-22

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')