CVE-2021-23129

MEDIUM6.1EPSS 0.85%

[20210303] - Core - XSS within alert messages showed to users

Published: 4/3/2025Modified: 5/20/2025

Description

An issue was discovered in Joomla! 2.5.0 through 3.9.24. Missing filtering of messages showed to users that could lead to xss issues.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM6.1CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

References (2)