Description
In Joomla! before 3.9.19, missing token checks in com_postinstall lead to CSRF.
Remediation
References
Related Vulnerabilities
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2021-33327)
WordPress Plugin Booking Ultra Pro Appointments Booking Calendar Local File Inclusion (1.1.13)
PHP Improper Input Validation Vulnerability (CVE-2011-0752)
WordPress Plugin MapifyLite (by MapifyPro) Cross-Site Scripting (3.3)