CVE-2009-1279
Joomla - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5 through 1.5.9 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors to the (1) com_admin component, (2) com_search component when "Gather Search Statistics" is enabled, and (3) the category view in the com_content component.
References (6)
Scores
EPSS
0.0001
EPSS Percentile
1.3%
Classification
CWE
CWE-79
Status
published
Affected Products (15)
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
n/a/n/a
Timeline
Published
Apr 09, 2009
Tracked Since
Feb 18, 2026