I received the following 3 software vulnerabilities from my web host. They have gone ahead and applied patches to them, but I wanted to point these out to you so you could apply fixes as well. I have attached the updated files (hopefully this is correct) for everyone's reference.
XSS vulnerability in Joomla
/templates/ja_builder/html/com_users/profile/default_core.php
XSS vulnerability in Joomla
/templates/ja_builder/html/com_media/imageslist/default_image.php
XSS vulnerability in Joomla
/templates/ja_builder/html/com_media/imageslist/default_folder.php