ZeroHour

CVE-2023-23754

CVSS 3.1
6.1 medium
EPSS
<1%p34
Published
()
Modified
Description

An issue was discovered in Joomla! 4.2.0 through 4.3.1. Lack of input validation caused an open redirect and XSS issue within the new mfa selection screen.

Vendors
joomla
Products
joomla\!
Ecosystems
Joomla
Weakness
CWE-20, CWE-601, CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.