Joomla Extension - regularlabs.com - XSS vectors in tag-provided inputs in various Regular Labs extensions - Tag-provided custom HTML, module content/title overrides and decoded modal or tooltip values could execute unsafe markup. A content author could inject JavaScript that ran in visitors’ browsers.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Regularlabs.Com | Articles Anywhere Pro Extension For Joomla | 1.0.0-18.0.2CNA affecteddefault unaffected | |
| Regularlabs.Com | Modals Extension For Joomla | 1.0.0-15.0.0CNA affecteddefault unaffected | |
| Regularlabs.Com | Modules Anywhere Pro Extension For Joomla | 1.0.0-8.4.1CNA affecteddefault unaffected | |
| Regularlabs.Com | Tooltips Extension For Joomla | 1.0.0-9.4.7CNA affecteddefault unaffected | |
| Regularlabs.Com | Users Anywhere Pro Extension For Joomla | 1.0.0-1.2.7CNA affecteddefault unaffected |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.