Unrated severityNVD Advisory· Published Dec 28, 2020· Updated Feb 24, 2026
[20201103] - Core - Path traversal in mod_random_image
CVE-2020-35612
Description
An issue was discovered in Joomla! 2.5.0 through 3.9.22. The folder parameter of mod_random_image lacked input validation, leading to a path traversal vulnerability.
Affected products
1- Range: 2.5.0-3.9.22
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- developer.joomla.org/security-centre/830-20201103-core-path-traversal-in-mod-random-image.htmlmitrex_refsource_MISCvendor-advisory
News mentions
0No linked articles in our index yet.