Description
An issue was discovered in Joomla! 3.0.0 through 3.9.27. Inadequate escaping in the rules field of the JForm API leads to a XSS vulnerability.
Remediation
References
Related Vulnerabilities
WordPress Plugin Booking Calendar Contact Form Multiple Vulnerabilities (1.0.23)
WordPress Plugin Simple Custom CSS and JS Cross-Site Scripting (3.3)
WordPress Plugin Data Tables Generator by Supsystic Cross-Site Scripting (1.10.0)
WordPress Other Vulnerability (CVE-2004-1584)
WordPress Plugin AdSense Manager Cross-Site Scripting (4.0.3)