Description
An issue was discovered in Joomla! 3.0.0 through 3.9.27. Inadequate escaping in the imagelist view of com_media leads to a XSS vulnerability.
Remediation
References
Related Vulnerabilities
WordPress Plugin Browser Rejector Remote File Inclusion (2.10)
WordPress Plugin TheCartPress eCommerce Shopping Cart Multiple Vulnerabilities (1.5.3.6)
ownCloud Exposure of Resource to Wrong Sphere Vulnerability (CVE-2020-36252)
WordPress Plugin YouTube Video Inserter Cross-Site Scripting (1.2.1.0)
WordPress Plugin Markup (JSON-LD) structured in schema.org Cross-Site Scripting (4.8.1)