Description
An issue was discovered in Joomla! before 3.9.21. Lack of escaping in mod_latestactions allows XSS attacks.
Remediation
References
Related Vulnerabilities
WordPress Plugin Accept Stripe Donation-AidWP Cross-Site Request Forgery (3.1.5)
Liferay Portal Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-26273)
PHP Other Vulnerability (CVE-2007-5424)
WordPress Plugin UPM Polls 'qid' Parameter SQL Injection (1.0.3)
Apache Traffic Server CVE-2015-5168 Vulnerability (CVE-2015-5168)