First published: Wed Feb 01 2023(Updated: )
An issue was discovered in Joomla! 4.0.0 through 4.2.6. A missing token check causes a CSRF vulnerability in the handling of post-installation messages.
Credit: security@joomla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla Joomla\! | >=4.0.0<=4.2.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Joomla issue is CVE-2023-23750.
The severity of CVE-2023-23750 is medium.
CVE-2023-23750 is a CSRF vulnerability in the handling of post-installation messages in Joomla, allowing attackers to perform unauthorized actions.
Joomla versions 4.0.0 through 4.2.6 are affected by CVE-2023-23750.
Yes, a fix is available for CVE-2023-23750. Please refer to the official Joomla security advisory for more information.
You can find more information about CVE-2023-23750 in the official Joomla security advisory at the provided reference link.