Description
Joomla! Core is prone to a cross-site request forgery vulnerability. Exploiting this issue may allow a remote attacker to perform certain administrative actions and gain unauthorized access to the affected application; other attacks are also possible. Joomla! Core version 3.6.0 is vulnerable.
Remediation
Update to Joomla! Core version 3.6.1 or latest
References
Related Vulnerabilities
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-5715)
WordPress Plugin Link Optimizer Lite Cross-Site Request Forgery (1.4.5)
ownCloud Files or Directories Accessible to External Parties Vulnerability (CVE-2015-4715)
WordPress Plugin YITH WooCommerce Wishlist Unspecified Vulnerability (2.0.6)