CVE-2019-7740: XSS
Published Feb 12, 2019
·Updated
An issue was discovered in Joomla! before 3.9.3. Inadequate parameter handling in JavaScript code (core.js writeDynaList) could lead to an XSS attack vector.
Affected Software
1 affected component
Joomla Joomla\!>=2.5.0<=3.9.2
Event History
Feb 12, 2019
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
via NVD·06:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2019-7740?
CVE-2019-7740 is classified as a medium severity vulnerability due to its potential to facilitate XSS attacks.
2
How do I fix CVE-2019-7740?
To fix CVE-2019-7740, upgrade Joomla! to version 3.9.3 or later.
3
What types of attacks can CVE-2019-7740 lead to?
CVE-2019-7740 can lead to cross-site scripting (XSS) attacks.
4
Which versions of Joomla! are affected by CVE-2019-7740?
Joomla! versions prior to 3.9.3, specifically from 2.5.0 to 3.9.2, are affected by CVE-2019-7740.
5
What causes the vulnerability in CVE-2019-7740?
The vulnerability in CVE-2019-7740 is caused by inadequate parameter handling in Joomla!'s JavaScript code.