CVE-2023-54364 | HikaShop 4.7.4 on Joomla Product Filter Endpoint from_option/from_ctrl/from_task/from_itemid cross site scripting (Exploit 51629 / EDB-51629)
A vulnerability was found in HikaShop 4.7.4 on Joomla. It has been declared as problematic. The impacted element is an unknown function of the component Product Filter Endpoint. Such manipulation of the argument from_option/from_ctrl/from_task/from_itemid leads to cross site scripting.
This vulnerability is documented as CVE-2023-54364. The attack can be executed remotely. Additionally, an exploit exists.