Description
In Joomla! 1.5.0 through 3.6.5 (fixed in 3.7.0), inadequate filtering of specific HTML attributes leads to XSS vulnerabilities in various components.
Remediation
References
Related Vulnerabilities
WordPress Ultimate Member Plugin Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-8520)
WordPress Plugin Keydatas Arbitrary File Upload (2.5.2)
WordPress Plugin Subscriptions & Memberships for PayPal Cross-Site Scripting (1.1.2)
WordPress Plugin EventCommerce WP Event Calendar Cross-Site Scripting (1.0)