Description
In Joomla! before 3.9.14, a missing access check in framework files could lead to a path disclosure.
Remediation
References
Related Vulnerabilities
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-6606)
WordPress Plugin WP-Lytebox 'pg' Parameter Local File Inclusion (1.3)
WordPress Plugin InfiniteWP Client Unspecified Vulnerability (1.3.14)
WordPress Plugin Aesop Story Engine Cross-Site Scripting (1.6)