Description
An issue was discovered in Joomla! 3.1.0 through 3.9.23. The lack of escaping of image-related parameters in multiple com_tags views cause lead to XSS attack vectors.
Remediation
References
Related Vulnerabilities
WordPress Plugin EWWW Image Optimizer Remote Code Execution (2.8.3)
MySQL CVE-2019-2694 Vulnerability (CVE-2019-2694)
Lighttpd Other Vulnerability (CVE-2006-0760)
WordPress 3.8.x Arbitrary File Deletion Vulnerability (3.8 - 3.8.26)
WordPress Plugin Limit Attempts by BestWebSoft SQL Injection (1.1.0)