vulnerability

Joomla!: [20240803] - Core - XSS in HTML Mail Templates (CVE-2024-27186)

Severity
6
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:N)
Published
08/21/2024
Added
08/21/2024
Modified
02/18/2025

Description

The mail template feature lacks an escaping mechanism, causing XSS vectors in multiple extensions.

Solution(s)

joomla-upgrade-4_4_7joomla-upgrade-5_1_3
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.