VYPR
Medium severity6.1NVD Advisory· Published Oct 29, 2019· Updated Jun 17, 2026

CVE-2018-10727

CVE-2018-10727

Description

Reflected Cross-Site Scripting (XSS) vulnerability in the fabrik_referrer hidden field in the Fabrikar Fabrik component through v3.8.1 for Joomla! allows remote attackers to inject arbitrary web script via the HTTP Referer header.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Fabrikar/Fabrik componentdescription
  • Fabrikar/Fabrikllm-fuzzy2 versions
    <=3.8.1+ 1 more
    • (no CPE)range: <=3.8.1
    • cpe:2.3:a:fabrikar:fabrik:*:*:*:*:*:joomla\!:*:*range: <=3.8.1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.