CVE-2024-21724 — Cross-site Scripting in Joomla !
Severity
6.1MEDIUMNVD
EPSS
0.0%
top 89.55%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 29
Description
Inadequate input validation for media selection fields lead to XSS vulnerabilities in various extensions.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.7