PT-2024-21719 · Joomla · Joomla!

Gareth Heyes

+1

·

Published

2024-08-20

·

Updated

2025-06-05

·

CVE-2024-27184

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Joomla versions 3.4.6 through 5.1.2
Description Inadequate validation of URLs could result in an invalid check of whether a redirect URL is internal or not. This issue may allow obscure unsafe links.
Recommendations For Joomla versions 3.4.6 through 5.1.2, upgrade to version 3.10.17-elts, 4.4.7, or 5.1.3 to stay secure.

Fix

Open Redirect

Weakness Enumeration

Related Identifiers

BIT-JOOMLA-2024-27184
CVE-2024-27184

Affected Products

Joomla!