First published: Thu Aug 17 2023(Updated: )
Improper Neutralization of Input During Web Page Generation vulnerability in AcyMailing Enterprise component for Joomla allows XSS. This issue affects AcyMailing Enterprise component for Joomla: 6.7.0-8.6.3.
Credit: security@joomla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Phlymail | >=6.7.0<8.7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2023-39971.
The severity of CVE-2023-39971 is medium (6.1).
The affected software for CVE-2023-39971 is AcyMailing Enterprise component for Joomla version 6.7.0 to 8.6.3.
The CWE category for CVE-2023-39971 is CWE-79 (Improper Neutralization of Input During Web Page Generation).
To fix CVE-2023-39971, it is recommended to update AcyMailing Enterprise component for Joomla to version 8.7.0 or higher.