CVE-2023-23750: [20230101] - Core - CSRF within post-installation messages
Published Feb 1, 2023
·Updated
An issue was discovered in Joomla! 4.0.0 through 4.2.6. A missing token check causes a CSRF vulnerability in the handling of post-installation messages.
Affected Software
1 affected component
Joomla Joomla\!>=4.0.0<=4.2.6
Event History
Feb 1, 2023
CVE Published
via MITRE·09:12 PM
Data Sourced
via MITRE·09:12 PM
DescriptionWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this Joomla issue?
The vulnerability ID for this Joomla issue is CVE-2023-23750.
2
What is the severity of CVE-2023-23750?
The severity of CVE-2023-23750 is medium.
3
How does CVE-2023-23750 impact Joomla?
CVE-2023-23750 is a CSRF vulnerability in the handling of post-installation messages in Joomla, allowing attackers to perform unauthorized actions.
4
Which versions of Joomla are affected by CVE-2023-23750?
Joomla versions 4.0.0 through 4.2.6 are affected by CVE-2023-23750.
5
Is there a fix available for CVE-2023-23750?
Yes, a fix is available for CVE-2023-23750. Please refer to the official Joomla security advisory for more information.
6
Where can I find more information about CVE-2023-23750?
You can find more information about CVE-2023-23750 in the official Joomla security advisory at the provided reference link.