CVE-2021-26027

MEDIUM5.3EPSS 0.01%

[20210307] - Core - ACL violation within com_content frontend editing

Published: 4/3/2025Modified: 5/20/2025

Description

An issue was discovered in Joomla! 3.0.0 through 3.9.24. Incorrect ACL checks could allow unauthorized change of the category for an article.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM5.3CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

References (2)