CVE-2023-23754
An issue was discovered in Joomla!
MEDIUM
Joomla CMS
Source officielle
Description
An issue was discovered in Joomla! 4.2.0 through 4.3.1. Lack of input validation caused an open redirect and XSS issue within the new mfa selection screen.
Sévérité
6.1
Moyenne · CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Score retenu : NVD
| Source | Sévérité d'origine | CVSS |
|---|---|---|
| NVD | MEDIUM | 6.1 (v3.1) |
| CERT-FR (ANSSI) | — | — |
Produit et versions
- Produit
- Joomla CMS
- Corrigée dans
- 4.3.2
- Publiée
- 30/05/2023
- Modifiée
- 17/06/2026
- CWE
- CWE-20, CWE-601, CWE-79
Versions concernées
- 4.2.0 – 4.3.1
- 4.2.0 – 4.3.2 (exclue)
Sources
- NVD CNA Joomla CVE-2023-23754 vu
- CERT-FR (ANSSI) Avis vu
Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.
Historique
- Source ajoutée : nvd26/09/2026 09:34 UTC
- Détectée via certfr26/09/2026 09:28 UTC