Joomla
cpe:2.3:a:joomla:joomla!:*:*:*:*:*:*:*
- >= 6.0.0, <= 6.1.0
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in the admin activation endpoint of the com_users component in Joomla! CMS. This issue arises from a lack of proper validation for CSRF tokens, creating an attack vector that could be exploited.
Exploitation of this vulnerability allows for Cross-Site Request Forgery attacks, where an attacker could potentially perform actions on behalf of an authenticated user without their consent.
Users are advised to upgrade to Joomla! CMS version 6.1.1.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.