vulnerability
Joomla!: [20240803] - Core - XSS in HTML Mail Templates (CVE-2024-27186)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
6 | (AV:N/AC:L/Au:N/C:P/I:P/A:N) | 08/21/2024 | 08/21/2024 | 02/18/2025 |
Severity
6
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:N)
Published
08/21/2024
Added
08/21/2024
Modified
02/18/2025
Description
The mail template feature lacks an escaping mechanism, causing XSS vectors in multiple extensions.
Solution(s)
joomla-upgrade-4_4_7joomla-upgrade-5_1_3

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.