First published: Wed Apr 14 2021(Updated: )
An issue was discovered in Joomla! 3.0.0 through 3.9.25. Inadequate escaping allowed XSS attacks using the logo parameter of the default templates on error page
Credit: security@joomla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla Joomla\! | >=3.0.0<=3.9.25 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-26030.
The severity of CVE-2021-26030 is medium with a severity value of 6.1.
The affected software is Joomla! versions 3.0.0 through 3.9.25.
The vulnerability can be exploited by using XSS attacks through the logo parameter of the default templates on the error page.
Yes, a fix is available. Please refer to the official Joomla! security center for more information.