MEDIUM
GHSA-8xqm-3qm5-qhfv
Joomla! allows attackers to access cached pages
Quick fix
GHSA-8xqm-3qm5-qhfv — joomla/joomla-platform: upgrade to the fixed version with the command below.
composer require joomla/joomla-platform:^1.5.4Details
The file caching implementation in Joomla! before 1.5.4 allows attackers to access cached pages via unknown attack vectors.
Are you affected?
Enter the version of the package you're using.
Affected packages
Packagist/joomla/joomla-platform
Introduced in:
0Fixed in: 1.5.4Fix
composer require joomla/joomla-platform:^1.5.4References
- https://nvd.nist.gov/vuln/detail/CVE-2008-3226[ADVISORY]
- https://exchange.xforce.ibmcloud.com/vulnerabilities/43650[WEB]
- https://github.com/joomla/joomla-platform[PACKAGE]
- https://web.archive.org/web/20080730154423/http://www.joomla.org/content/view/5180/1[WEB]
- https://web.archive.org/web/20200228023838/https://www.securityfocus.com/bid/30125[WEB]
- http://www.openwall.com/lists/oss-security/2008/07/12/2[WEB]