VYPR

com_modules

by Joomla

CVEs (1)

  • CVE-2021-23123MedJan 12, 2021
    risk 0.35cvss 5.3epss 0.01

    An issue was discovered in Joomla! 3.0.0 through 3.9.23. The lack of ACL checks in the orderPosition endpoint of com_modules leak names of unpublished and/or inaccessible modules.