First published: Tue May 30 2023(Updated: )
An issue was discovered in Joomla! 4.2.0 through 4.3.1. Lack of input validation caused an open redirect and XSS issue within the new mfa selection screen.
Credit: security@joomla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla Joomla\! | >=4.2.0<4.3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2023-23754.
The severity level of CVE-2023-23754 is medium.
The vulnerability in CVE-2023-23754 can cause an open redirect and XSS issue within the new MFA selection screen in Joomla! 4.2.0 through 4.3.1.
CVE-2023-23754 affects Joomla! versions 4.2.0 through 4.3.1.
Yes, a fix is available for CVE-2023-23754. It is recommended to update Joomla! to version 4.3.2 or later.