天下漏洞,尽知其名
MEDIUM

CVE-2026-92232 Joomla! Core InputFilter XSS 过滤绕过漏洞

MEDIUM
暂无 CVSS 评分
原始情报

Joomla! Core – [20260916] – Core – XSS filter bypass in InputFilter via whitespace characters in HTML data URIs in Joomla 1.5.0-5.4.8, 6.0.0-6.1.3 – The cleanAttribute method removes HTML data URIs, however injected whitespaces characters could circumvent that cleanup, causing an XSS vector.