PT-2020-11998 · Open Source Matters · Joomla!

Pham Van Khanh

·

Published

2020-03-16

·

Updated

2025-04-03

·

CVE-2020-10242

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Joomla! versions prior to 3.9.16
Description The issue is related to inadequate handling of CSS selectors in the Protostar and Beez3 JavaScript, which allows XSS attacks.
Recommendations For versions prior to 3.9.16, update to version 3.9.16 or later to resolve the issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

BIT-JOOMLA-2020-10242
CVE-2020-10242

Affected Products

Joomla!