First published: Wed Jan 16 2019(Updated: )
An issue was discovered in Joomla! before 3.9.2. Inadequate checks of the Global Configuration Text Filter settings allowed stored XSS.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla | >=2.5.0<3.9.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-6263 has been rated with a medium severity level due to the potential for stored cross-site scripting (XSS) attacks.
To fix CVE-2019-6263, update to Joomla! version 3.9.2 or later as this release contains the necessary security patches.
CVE-2019-6263 affects Joomla! versions prior to 3.9.2 and is applicable to any system running these versions.
Stored XSS in CVE-2019-6263 refers to an attack where malicious scripts are injected and saved to be executed later when users access affected content.
Site administrators and users of Joomla! versions before 3.9.2 should be concerned about CVE-2019-6263 due to its potential exploitation.