Description
An issue was discovered in Joomla! before 3.9.3. Inadequate checks at the Global Configuration helpurl settings allowed stored XSS.
Remediation
References
Related Vulnerabilities
Drupal Core 9.4.x Remote Code Execution (9.4.0 - 9.4.2)
ownCloud Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-5866)
Oracle Database Server CVE-2020-2737 Vulnerability (CVE-2020-2737)
Joomla Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2008-4104)
WordPress Plugin Video Player Unspecified Vulnerability (1.1.4)