Vulnerability Bulletins |
[20180103] - Core - XSS vulnerability in Uri class |
|
| Affected software | Joomla |
|
Project: Joomla! SubProject: CMS Impact: Moderate Severity: Low Versions: 1.5.0 through 3.8.3 Exploit type: XSS Reported Date: 2017-November-17 Fixed Date: 2018-January-30 CVE Number: CVE-2018-6379 Description Inadequate input filtering in the Uri class (formerly JUri) leads to a XSS vulnerability. Affected Installs Joomla! CMS versions 1.5.0 through 3.8.3 Solution Upgrade to version 3.8.4 Contact The JSST at the Joomla! Security Centre. Reported By: Octavian Cinciu More info: http://feeds.joomla.org/~r/JoomlaSecurityNews/~3/_QbAD5ZF1qA/721-20180103-core-xss-vulnerability.html |
|






