CVE-2021-23124
12.01.2021, 21:15
An issue was discovered in Joomla! 3.9.0 through 3.9.23. The lack of escaping in mod_breadcrumbs aria-label attribute allows XSS attacks.
Vendor | Product | Version |
---|---|---|
joomla | joomla\! | 3.9.0 ≤ 𝑥 ≤ 3.9.23 |
𝑥
= Vulnerable software versions