Description
In Joomla! 3.x before 3.9.12, inadequate escaping allowed XSS attacks using the logo parameter of the default templates.
Remediation
References
Related Vulnerabilities
WordPress Plugin BruteBank-WP Security & Firewall Cross-Site Request Forgery (1.8)
Oracle Application Server Other Vulnerability (CVE-2005-3445)
WordPress Plugin Embedded Video 'lembedded-video.php' Cross-Site Scripting (4.1)
WordPress Plugin Custom Sidebars-Dynamic Widget Area Manager Cross-Site Scripting (2.1.0.1)
WordPress Plugin NextMove Lite-Thank You Page for WooCommerce Security Bypass (2.17.0)