Description
Joomla! Core is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently gain read access to data which should be access restricted to users with edit_own level. Joomla! Core versions ranging from 1.6.0 and up to and including 3.6.0 are vulnerable.
Remediation
Update to Joomla! Core version 3.6.1 or latest
References
Related Vulnerabilities
MediaWiki Missing Authorization Vulnerability (CVE-2019-12470)
WordPress Plugin Sharebar Multiple Vulnerabilities (1.2.5)
WordPress Plugin Uncanny Toolkit for LearnDash Cross-Site Request Forgery (3.6.4.1)
WordPress Plugin Malware Scanner Privilege Escalation (4.7.2)
WordPress Plugin Blog2Social:Social Media Auto Post & Scheduler PHP Object Injection (5.0.0)