Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-499q-9p4f-56jf

Опубликовано: 25 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.5

Описание

A stored XSS vulnerability in Quantum Manager component 1.0.0-3.2.0 for Joomla was discovered. The SVG upload feature does not sanitize uploads.

A stored XSS vulnerability in Quantum Manager component 1.0.0-3.2.0 for Joomla was discovered. The SVG upload feature does not sanitize uploads.

EPSS

Процентиль: 16%
0.0005
Низкий

8.5 High

CVSS4

Дефекты

CWE-79

Связанные уязвимости

nvd
6 месяцев назад

A stored XSS vulnerability in Quantum Manager component 1.0.0-3.2.0 for Joomla was discovered. The SVG upload feature does not sanitize uploads.

EPSS

Процентиль: 16%
0.0005
Низкий

8.5 High

CVSS4

Дефекты

CWE-79