An issue was discovered in Joomla! 4.2.0 through 4.3.1. Lack of input validation caused an open redirect and XSS issue within the new mfa selection screen.
References
Configurations
History
21 Nov 2024, 07:46
Type | Values Removed | Values Added |
---|---|---|
References | () https://developer.joomla.org/security-centre/899-20230501-core-open-redirects-and-xss-within-the-mfa-selection.html - Vendor Advisory |
06 Jun 2023, 18:07
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-601 CWE-20 |
|
CPE | cpe:2.3:a:joomla:joomla\!:*:*:*:*:*:*:*:* | |
First Time |
Joomla joomla\!
Joomla |
|
References | (MISC) https://developer.joomla.org/security-centre/899-20230501-core-open-redirects-and-xss-within-the-mfa-selection.html - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.1 |
30 May 2023, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-05-30 17:15
Updated : 2024-11-21 07:46
NVD link : CVE-2023-23754
Mitre link : CVE-2023-23754
CVE.ORG link : CVE-2023-23754
JSON object : View
Products Affected
joomla
- joomla\!