CVE-2024-21731: Joomla!
Medium severity, CVSS 6.1. EPSS: 0.4% chance of exploitation in the next 30 days.
Improper handling of input could lead to an XSS vector in the StringHelper::truncate method.
Affected products
- Joomla! Joomla!: from 3.0.0, up to and including 3.10.15; from 4.0.0, up to and including 4.4.5; from 5.0.0, up to and including 5.1.1
Published 2024-07-09. Last modified 2026-06-17.