PT-2020-17362 · Joomla · Joomla!

Phil Taylor

·

Published

2020-12-28

·

Updated

2025-04-03

·

CVE-2020-35610

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Joomla! versions 2.5.0 through 3.9.22
Description An issue was discovered where the autosuggestion feature of com finder did not respect the access level of the corresponding terms.
Recommendations For Joomla! versions 2.5.0 through 3.9.22, consider disabling the autosuggestion feature of com finder until a patch is available.

Fix

Related Identifiers

BIT-JOOMLA-2020-35610
CVE-2020-35610

Affected Products

Joomla!