CVE-2021-23124

All FrameworksJoomlaCWE-OtherCVE-2021-23124

CVE-2021-23124

State: PUBLISHED · Published: 2021-01-12 · Updated: 2026-02-25 · Assigner: Joomla
Description
An issue was discovered in Joomla! 3.9.0 through 3.9.23. The lack of escaping in mod_breadcrumbs aria-label attribute allows XSS attacks.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2021/23xxx/CVE-2021-23124.json