CVE-2026-58148

Check if ChronoForms 7.X is vulnerable to CVE-2026-58148 and find a patch.

Overview

The issue is that the vulnerability does not affect the 7.X branch because JavaScript does not execute in that version.
No patch is needed for ChronoForms 7.X as it is not vulnerable to CVE-2026-58148.

Answered
ChronoForms v7

Hello!

Is the 7.X branch vulnerable to CVE-2026-58148? If so, is there a patch?

Max_admin Max_admin 24d ago
Answer

Hi soporte

I do not think the same issue is in v7, I have just tried it and the JavaScript does not execute.

Max, ChronoForms developer
ChronoMyAdmin: Database administration within Joomla, no phpMyAdmin needed.
ChronoMails simplifies Joomla email: newsletters, logging, and custom templates.

Ok, good news. I understand then that since our site is running version 7, we're not affected.

Thank you very much!

Max_admin Max_admin 23d ago

No problem!

Yes, your v7 install should not be affected by this specific vulnerability found in v8, that's because the major versions use different code bases.

Max, ChronoForms developer
ChronoMyAdmin: Database administration within Joomla, no phpMyAdmin needed.
ChronoMails simplifies Joomla email: newsletters, logging, and custom templates.
Post a Reply