CVE-2020-8420: CSRF
Published Jan 28, 2020
·Updated
An issue was discovered in Joomla! before 3.9.15. A missing CSRF token check in the LESS compiler of comtemplates causes a CSRF vulnerability.
Affected Software
1 affected component
Joomla Joomla\!>=3.0.0<3.9.15
Event History
Jan 28, 2020
CVE Published
via MITRE·08:58 PM
Data Sourced
via MITRE·08:58 PM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-8420?
CVE-2020-8420 is classified as a high severity vulnerability due to its potential to allow unauthorized actions through CSRF attacks.
2
How do I fix CVE-2020-8420?
To fix CVE-2020-8420, upgrade your Joomla! installation to version 3.9.15 or later.
3
What causes CVE-2020-8420?
CVE-2020-8420 is caused by a missing CSRF token check in the LESS compiler of com_templates in Joomla!.
4
Who is affected by CVE-2020-8420?
CVE-2020-8420 affects Joomla! versions prior to 3.9.15.
5
What type of vulnerability is CVE-2020-8420?
CVE-2020-8420 is a Cross-Site Request Forgery (CSRF) vulnerability.