Description
An issue was discovered in Joomla! 4.0.0 through 4.2.4. A missing ACL check allows non super-admin users to access com_actionlogs.
Remediation
References
Related Vulnerabilities
Joomla Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-7983)
WordPress Plugin Prismatic Multiple Cross-Site Scripting Vulnerabilities (2.7)
WordPress Plugin Custom Global Variables Cross-Site Scripting (1.0.5)
WordPress Plugin FV Flowplayer Video Player Cross-Site Scripting (7.3.13.727)