Description An issue was discovered in Joomla! 4.0.0 through 4.1.0. Possible XSS atack vector through SVG embedding in com_media. Remediation References CVE-2022-23801 Related Vulnerabilities Angular Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-4231) MySQL CVE-2021-35648 Vulnerability (CVE-2021-35648) WordPress Plugin Mingle Forum Multiple Cross-Site Scripting Vulnerabilities (1.0.33) WordPress Plugin Easy Testimonials Cross-Site Scripting (1.36.1) WordPress Plugin BSK PDF Manager SQL Injection (3.1.1) Severity Medium Classification CVE-2022-23801 CWE-707 Tags Missing Update Known Vulnerabilities