Joomla · Joomla! · CVE-2022-23801
**Name of the Vulnerable Software and Affected Versions**
Joomla! versions 4.0.0 through 4.1.0
**Description**
An issue was discovered in Joomla, allowing a possible XSS attack vector through SVG embedding in com media.
**Recommendations**
For Joomla! versions 4.0.0 through 4.1.0, consider disabling the SVG embedding feature in com media as a temporary workaround until a patch is available. Restrict access to com media to minimize the risk of exploitation. Avoid using SVG files in com media until the issue is resolved.