Description
An issue was discovered in Joomla! 3.7.0 through 3.10.6. Lack of input validation could allow an XSS attack using com_fields.
Remediation
References
Related Vulnerabilities
WordPress Plugin Meks Flexible Shortcodes Cross-Site Scripting (1.3.4)
Jboss EAP Uncontrolled Resource Consumption Vulnerability (CVE-2020-14340)
CKEditor Inclusion of Functionality from Untrusted Control Sphere Vulnerability (CVE-2021-26271)
WordPress Plugin Dialog Contact Form Cross-Site Scripting (1.2.0)