Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g3m5-vvj7-xrwv

Опубликовано: 14 мая 2022
Источник: github
Github: Прошло ревью
CVSS3: 4.8

Описание

Joomla! XSS Vulnerability

An issue was discovered in Joomla! Core starting in 3.0.0 and prior to 3.8.8. Inadequate input filtering leads to a multiple XSS vulnerabilities. Additionally, the default filtering settings could potentially allow users of the default Administrator user group to perform a XSS attack.

Пакеты

Наименование

joomla/joomla-cms

composer
Затронутые версииВерсия исправления

>= 3.0.0, < 3.8.8

3.8.8

EPSS

Процентиль: 21%
0.00066
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.8
nvd
больше 7 лет назад

An issue was discovered in Joomla! Core before 3.8.8. Inadequate input filtering leads to a multiple XSS vulnerabilities. Additionally, the default filtering settings could potentially allow users of the default Administrator user group to perform a XSS attack.

EPSS

Процентиль: 21%
0.00066
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79