Joomla Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2017-7986 - Vulnerability Database

Joomla Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2017-7986

Medium
Reference: CVE-2017-7986
Title: Joomla Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

In Joomla 1.5.0 through 3.6.5 (fixed in 3.7.0) inadequate filtering of specific HTML attributes leads to XSS vulnerabilities in various components.