Joomla! CMS
cpe:2.3:a:joomla:joomla!:*:*:*:*:*:*:*
- >= 4.0.0, <= 4.4.13
- >= 5.0.0, <= 5.3.3
A user enumeration vulnerability has been identified in the passkey authentication method of Joomla! CMS. This issue arises from improper handling of authentication requests, allowing for the enumeration of users.
Exploitation of this vulnerability allows for user enumeration, which could be used to gather information about valid usernames in the system.
Users are advised to upgrade to Joomla! CMS versions 4.4.14 or 5.3.4.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.