Security Advisory

CVE-2023-54363

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-04-09 20:54:52
Last updated 2026-05-24 01:37:41
Assigner VulnCheck
State PUBLISHED

Description

Joomla Solidres 2.13.3 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by manipulating multiple GET parameters including show, reviews, type_id, distance, facilities, categories, prices, location, and Itemid. Attackers can craft malicious URLs containing JavaScript payloads in these parameters to steal session tokens, login credentials, or manipulate site content when victims visit the crafted links.