Description
An issue was discovered in Joomla! before 3.9.17. Incorrect ACL checks in the access level section of com_users allow the unauthorized editing of usergroups.
Remediation
References
Related Vulnerabilities
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-1044)
Sqlite Missing Release of Memory after Effective Lifetime Vulnerability (CVE-2021-45346)
WordPress Plugin Twitter LiveBlog Cross-Site Request Forgery (1.1.2)
concrete5 Server-Side Request Forgery (SSRF) Vulnerability (CVE-2021-22958)