Vulnerabilities (CVE)

Filtered by vendor J\!extensions Store Subscribe
Filtered by product Jchatsocial
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-3863 1 J\!extensions Store 1 Jchatsocial 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in the JChatSocial component before 2.3 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the filename parameter in a file upload in an active JChat chat window.