Description
An issue was discovered in Joomla! 2.5.0 through 3.10.6 & 4.0.0 through 4.1.0. Inadequate validation of URLs could result into an invalid check whether an redirect URL is internal or not.
Remediation
References
Related Vulnerabilities
WordPress Plugin Advanced Custom Fields PRO Security Bypass (5.12)
WordPress Plugin Post Thumbnail Editor Multiple Cross-Site Request Forgery Vulnerabilities (2.4.1)
WordPress Plugin WP Accessibility Cross-Site Scripting (1.6.10)
Oracle Database Server CVE-2009-0972 Vulnerability (CVE-2009-0972)
WordPress Plugin Image Widget Unspecified Vulnerability (4.1.2)