An issue was discovered in Joomla! 4.2.0 through 4.3.1. Lack of input validation caused an open redirect and XSS issue within the new mfa selection screen.
History

Thu, 09 Jan 2025 22:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-79
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Joomla

Published:

Updated: 2025-01-10T04:33:39.676Z

Reserved: 2023-01-17T19:48:53.503Z

Link: CVE-2023-23754

cve-icon Vulnrichment

Updated: 2024-08-02T10:42:25.711Z

cve-icon NVD

Status : Modified

Published: 2023-05-30T17:15:09.887

Modified: 2025-01-09T22:15:25.490

Link: CVE-2023-23754

cve-icon Redhat

No data.