Reflected XSS in Joomla! 4.x com_media (before 4.2.5)
CVE-2022-27914 Published on November 8, 2022
[20221101] - Core - RXSS through reflection of user input in com_media
An issue was discovered in Joomla! 4.0.0 through 4.2.4. Inadequate filtering of potentially malicious user input leads to reflected XSS vulnerabilities in com_media.
Products Associated with CVE-2022-27914
Want to know whenever a new CVE is published for Joomla? stack.watch will email you.
Affected Versions
Joomla! Project Joomla! CMS Version 4.0.0-4.2.4 is affected by CVE-2022-27914Exploit Probability
EPSS
0.15%
Percentile
34.91%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.