PT-2020-14591 · Open Source Matters · Joomla!

Phil Taylor

·

Published

2020-07-15

·

Updated

2025-04-03

·

CVE-2020-15696

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Joomla! versions prior to 3.9.20
Description An issue was discovered in Joomla! where lack of input filtering and escaping allows XSS attacks in mod random image.
Recommendations For versions prior to 3.9.20, update to version 3.9.20 or later to resolve the issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

BIT-JOOMLA-2020-15696
CVE-2020-15696

Affected Products

Joomla!