XSS Vulnerabilities in Mail Template Feature of Unspecified Extensions

CVE-2024-27186
Currently unrated 🤨

Key Information

Vendor
Joomla
Status
Joomla! Cms
Vendor
CVE Published:
20 August 2024

Summary

The mail template feature lacks an escaping mechanism, causing XSS vectors in multiple extensions.

Affected Version(s)

Joomla! CMS = 4.0.0-4.4.6

Joomla! CMS = 5.0.0-5.1.2

Timeline

  • Vulnerability published.

  • Vulnerability Reserved.

Collectors

NVD DatabaseMitre Database

Credit

Elysee Franchuk
.