That's awesome. That nonsense at the bottom was originally only 4 characters, and I got an extra escaped body tag out of it. :)
See? Sanitize all input.
'>"
As I see it, it's not a Joomla problem as much as it is a developer problem. No matter what platform you're developing for, you HAVE to sanitize user input. ALL of it. For crying out loud, mysql_real_escape_string() and htmlentities() will go a REAL…
It's 2 L's, Alex. :)
The Vulnerable Extension list is in NO WAY complete at all. Has anyone seen milw0rm.com? Plenty of Joomla vulnerabilities there, even though it's no longer being updated. Not to mention only a portion of the ones I've discovere…