Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 04 Jun 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Joomla
Joomla joomla\! |
|
| CPEs | cpe:2.3:a:joomla:joomla\!:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Joomla
Joomla joomla\! |
Thu, 21 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 20 Aug 2024 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 20 Aug 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The mail template feature lacks an escaping mechanism, causing XSS vectors in multiple extensions. | |
| Title | [20240803] - Core - XSS in HTML Mail Templates | |
| Weaknesses | CWE-79 | |
| References |
|
Status: PUBLISHED
Assigner: Joomla
Published:
Updated: 2024-11-26T04:35:13.782Z
Reserved: 2024-02-21T04:29:37.776Z
Link: CVE-2024-27186
Updated: 2024-08-20T17:39:14.713Z
Status : Analyzed
Published: 2024-08-20T16:15:10.893
Modified: 2025-06-04T20:58:35.960
Link: CVE-2024-27186
No data.
OpenCVE Enrichment
No data.