Description
Sucuri reported a vulnerability in Akeeba Backup for Joomla! that could allow an attacker to list and download backups created with the Akeeba extension. This vulnerability is present on Joomla websites running Akeeba that have the "Enable front-end and remote backup" option activated.
Remediation
Upgrade to the latest version of Akeeba Backup for Joomla!.
References
Related Vulnerabilities
WordPress Plugin WordPress Books Gallery Security Bypass (3.5)
WordPress Plugin WP Mega Menu Security Bypass (1.3.9)
WordPress Plugin UserPro-Community and User Profile Security Bypass (4.9.17)
Case-Insensitive Routing Bypass in Express.js Application
WordPress Plugin DW Question & Answer Security Bypass (1.2.9)