Description
An issue was discovered in Joomla! before 3.9.3. Inadequate parameter handling in JavaScript code (core.js writeDynaList) could lead to an XSS attack vector.
Remediation
References
Related Vulnerabilities
WordPress Plugin File Manager Arbitrary File Upload (6.8)
MySQL CVE-2013-5807 Vulnerability (CVE-2013-5807)
Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-2687)
Piwigo Improper Access Control Vulnerability (CVE-2016-10105)
WordPress Plugin PhotoXhibit Multiple Cross-Site Scripting Vulnerabilities (2.1.8)