Description
In Joomla! 3.x before 3.9.12, inadequate escaping allowed XSS attacks using the logo parameter of the default templates.
Remediation
References
Related Vulnerabilities
Apache HTTP Server Other Vulnerability (CVE-2003-0192)
MySQL CVE-2018-3061 Vulnerability (CVE-2018-3061)
PHP Other Vulnerability (CVE-2004-0595)
WordPress Plugin Login with Azure (Azure SSO) Cross-Site Scripting (1.4.4)
XWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-26477)