CyberRota Analysis
AI-GeneratedThe Fabrik extension for Joomla versions prior to 4.7.2 is vulnerable to an unauthenticated stored cross-site scripting (XSS) attack due to inadequate handling of user-supplied input in the jsactions feature. This vulnerability allows attackers to inject malicious scripts that can be executed in the context of users accessing the affected application, potentially compromising sensitive data and user sessions. Joomla administrators and web developers using this extension should prioritize patching to mitigate the risk of exploitation.
Original NVD Description
Joomla Extension - fabrikar.com - Unauthenticated stored XSS in Fabrik < 4.7.2 - The handling of user supplied input in the jsactions feature leads to an stored XSS vector.