First published: Thu Mar 04 2021(Updated: )
An issue was discovered in Joomla! 2.5.0 through 3.9.24. Missing filtering of feed fields could lead to xss issues.
Credit: security@joomla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla Joomla\! | >=2.5.0<3.9.25 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID CVE-2021-23130 refers to an issue discovered in Joomla versions 2.5.0 through 3.9.24, where missing filtering of feed fields could lead to XSS (cross-site scripting) issues.
Vulnerability CVE-2021-23130 has a severity value of 6.1, which is classified as medium severity.
The XSS issue in Joomla, as described in vulnerability CVE-2021-23130, can be exploited by attackers injecting malicious scripts into unfiltered feed fields, allowing them to execute arbitrary code and potentially compromise user data.
The potential impact of vulnerability CVE-2021-23130 is that it can allow attackers to execute malicious code on a Joomla website, leading to unauthorized access, data theft, and potential compromise of user information.
To mitigate vulnerability CVE-2021-23130, it is recommended to update Joomla to version 3.9.25 or above, which includes the necessary filtering of feed fields to prevent XSS attacks.