CVE-2022-27914: [20221101] - Core - RXSS through reflection of user input in com_media
Published Nov 8, 2022
·Updated
An issue was discovered in Joomla! 4.0.0 through 4.2.4. Inadequate filtering of potentially malicious user input leads to reflected XSS vulnerabilities in commedia.
Affected Software
1 affected component
Joomla Joomla\!>=4.0.0<4.2.5
Event History
Nov 8, 2022
CVE Published
via MITRE·06:50 PM
Data Sourced
via MITRE·06:50 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this Joomla issue?
The vulnerability ID for this Joomla issue is CVE-2022-27914.
2
What is the severity of CVE-2022-27914?
The severity of CVE-2022-27914 is medium (6.1).
3
What is the affected software version range for CVE-2022-27914?
The affected software version range for CVE-2022-27914 is Joomla 4.0.0 through 4.2.4.
4
What is the impact of CVE-2022-27914?
CVE-2022-27914 allows for reflected XSS vulnerabilities in com_media.
5
How can I fix CVE-2022-27914?
To fix CVE-2022-27914, update Joomla to version 4.2.5 or higher.