Description In Joomla! before 3.9.19, missing token checks in com_postinstall lead to CSRF. Remediation References CVE-2020-13760 Related Vulnerabilities WordPress Plugin Popup Builder-Create highly converting, mobile friendly marketing popups Unspecified Vulnerability (2.5.3) PHP Integer Overflow or Wraparound Vulnerability (CVE-2024-11236) Joomla! Core SQL Injection (1.7.0 - 3.9.15) WordPress Plugin Product Catalog X Cross-Site Request Forgery (1.5.12) SharePoint CVE-2021-31173 Vulnerability (CVE-2021-31173) Severity High Classification CVE-2020-13760 CWE-352 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Tags Missing Update Known Vulnerabilities