In Joomla! Core before 3.8.8, inadequate filtering of file and folder names leads to various XSS attack vectors in the media manager.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-6378.json"