Description In Joomla! before 3.9.14, a missing access check in framework files could lead to a path disclosure. Remediation References CVE-2019-19845 Related Vulnerabilities Magento Observable Differences in Behavior to Error Inputs Vulnerability (CVE-2020-15151) WordPress Plugin You Shang Cross-Site Scripting (1.0.1) MediaWiki Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2008-5252) PHP Cryptographic Issues Vulnerability (CVE-2015-8867) WordPress Plugin MW WP Form Security Bypass (4.4.5) Severity Medium Classification CVE-2019-19845 CWE-22 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N Tags Missing Update Known Vulnerabilities