Akeeba backup access control bypass

  • Sucuri reported a vulnerability in Akeeba Backup for Joomla! that could allow an attacker to list and download backups created with the Akeeba extension. This vulnerability is present on Joomla websites running Akeeba that have the "Enable front-end and remote backup" option activated.
  • Upgrade to the latest version of Akeeba Backup for Joomla!.