Cross-site scripting (XSS) vulnerability in the login module in Joomla! 3.4.x before 3.4.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
http://www.securitytracker.com/id/1033541
http://developer.joomla.org/security-centre/626-20150908-core-xss-vulnerability.html