XSS Vulnerabilities in Image Processing Methods

CVE-2024-40743
Currently unrated 🤨

Key Information

Vendor
Joomla
Status
Joomla! Cms
Vendor
CVE Published:
20 August 2024

Summary

The stripImages and stripIframes methods didn't properly process inputs, leading to XSS vectors.

Affected Version(s)

Joomla! CMS = 3.0.0-3.10.16

Joomla! CMS = 4.0.0-4.4.6

Joomla! CMS = 5.0.0-5.1.2

Timeline

  • Vulnerability published.

  • Vulnerability Reserved.

Collectors

NVD DatabaseMitre Database

Credit

Jesper den Boer
.