XSS Vulnerabilities in Image Processing Methods
CVE-2024-40743

Currently unrated

Key Information:

Vendor
Joomla
Status
Joomla! Cms
Vendor
CVE Published:
20 August 2024

Summary

The stripImages and stripIframes methods didn't properly process inputs, leading to XSS vectors.

Affected Version(s)

Joomla! CMS 3.0.0-3.10.16

Joomla! CMS 4.0.0-4.4.6

Joomla! CMS 5.0.0-5.1.2

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Collectors

NVD DatabaseMitre Database

Credit

Jesper den Boer
.