Description
Joomla! Core is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to bypass intended access restrictions and perform otherwise restricted actions and subsequently execute a file deletion command. Joomla! Core version 4.0.0 is vulnerable.
Remediation
Update to Joomla! Core version 4.0.1 or latest
References
Related Vulnerabilities
Liferay DXP Server-Side Request Forgery (SSRF) Vulnerability (CVE-2025-4655)
WordPress Plugin Downloads Manager 'upload.php' Arbitrary File Upload (0.2)
Magento Observable Differences in Behavior to Error Inputs Vulnerability (CVE-2020-9588)
WordPress Plugin Password Vault Cross-Site Scripting (1.8.2)
Oracle Database Server CVE-2011-0806 Vulnerability (CVE-2011-0806)