Description
An issue was discovered in Joomla! before 3.9.4. The media form field lacks escaping, leading to XSS.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2015-4921 Vulnerability (CVE-2015-4921)
WordPress Plugin WooCommerce Product Attachment Cross-Site Scripting (1.1.2)
Atlassian Confluence Server-Side Request Forgery (SSRF) Vulnerability (CVE-2021-26072)
WordPress Plugin WooCommerce PDF Invoices & Packing Slips Cross-Site Scripting (2.0.12)