Description
An issue was discovered in Joomla! before 3.9.2. Inadequate escaping in mod_banners leads to a stored XSS vulnerability.
Remediation
References
Related Vulnerabilities
Sqlite Use After Free Vulnerability (CVE-2020-11656)
PostgreSQL Other Vulnerability (CVE-2002-1397)
WordPress Plugin Events Manager Pro CSV Injection (2.6.7.1)
SugarCRM Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2019-17299)
WordPress Plugin CM Pop-Up banners for WordPress Cross-Site Scripting (1.4.10)