ZeroHour

CVE-2019-12766

CVSS 3.1
6.1 medium
EPSS
<1%p58
Published
()
Modified
Description

An issue was discovered in Joomla! before 3.9.7. The subform fieldtype does not sufficiently filter or validate input of subfields. This leads to XSS attack vectors.

Vendors
joomla
Products
joomla\!
Ecosystems
Joomla
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.