CVE-2017-9934: Joomla!

Medium severity, CVSS 6.1. EPSS: 2.2% chance of exploitation in the next 30 days.

Missing CSRF token checks and improper input validation in Joomla! CMS 1.7.3 through 3.7.2 lead to an XSS vulnerability.

Affected products

  • Joomla! Joomla!: version 1.7.3 only; version 1.7.4 only; version 1.7.5 only; version 2.5.0 only; version 2.5.1 only; version 2.5.2 only; …

Published 2017-07-17. Last modified 2026-06-17.