CVE-2026-35221 | Joomla CMS up to 5.4.5/6.1.0 Search Query sql injection (EUVD-2026-31892)
A vulnerability classified as critical has been found in Joomla CMS up to 5.4.5/6.1.0. This issue affects some unknown processing of the component Search Query Handler. Performing a manipulation results in sql injection.
This vulnerability is identified as CVE-2026-35221. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.