CVE-2021-23123

All FrameworksJoomlaCWE-OtherCVE-2021-23123

CVE-2021-23123

State: PUBLISHED · Published: 2021-01-12 · Updated: 2026-02-25 · Assigner: Joomla
Description
An issue was discovered in Joomla! 3.0.0 through 3.9.23. The lack of ACL checks in the orderPosition endpoint of com_modules leak names of unpublished and/or inaccessible modules.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2021/23xxx/CVE-2021-23123.json