Headline
CVE-2022-27910: DOCman - Changelog
In Joomla component 'Joomlatools - DOCman 3.5.13 (and likely most versions below)' are affected to an reflected Cross-Site Scripting (XSS) in an image upload function
DOCman 3.5.14 | 14 June 2022
- fixed - Sorting by Category name does not work
- fixed - Category documents count
- fixed - Missing publishing options
- fixed - XSS in file selector