FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Joomla! -- Core - XSS Vulnerability

Affected packages
3.2.0 <= joomla3 < 3.2.5
3.3.0 <= joomla3 < 3.3.4

Details

VuXML ID adbb32d9-7ac5-11e5-b35a-002590263bf5
Discovery 2014-09-23
Entry 2015-10-25

The JSST and the Joomla! Security Center report:

[20140901] - Core - XSS Vulnerability

Inadequate escaping leads to XSS vulnerability in com_media.

References

CVE Name CVE-2014-6631
URL http://developer.joomla.org/security-centre/593-20140901-core-xss-vulnerability.html
URL https://www.joomla.org/announcements/release-news/5564-joomla-3-3-4-released.html