Description
Joomla! Core is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to bypass intended access restrictions and perform otherwise restricted actions. Joomla! Core versions 3.x.x ranging from 3.2.0 and up to and including 3.9.24 are vulnerable.
Remediation
Update to Joomla! Core version 3.9.25 or latest
References
Related Vulnerabilities
WordPress Plugin PI Button includes Backdoor [Only if downloaded via the vendor website] (3.3.3)
Drupal Core 7.x Directory Traversal (7.0 - 7.81)
WordPress Plugin WooCommerce Social Login PHP Object Injection (2.6.2)
Perl Out-of-bounds Read Vulnerability (CVE-2018-18313)
WordPress Plugin PDW Media File Browser 'upload.php' Arbitrary File Upload (1.1)