VDB
Sign up
MEDIUM

GHSA-9qr2-fx2g-pfvh

Joomla! Open Redirect vulnerability

Quick fix

GHSA-9qr2-fx2g-pfvh — joomla/framework: upgrade to the fixed version with the command below.

composer require joomla/framework:^1.5.7

Details

Multiple open redirect vulnerabilities in Joomla! 1.5 before 1.5.7 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a "passed in" URL.

Are you affected?

Enter the version of the package you're using.

Affected packages

Packagist/joomla/framework
Introduced in: 1.5.0Fixed in: 1.5.7
Fixcomposer require joomla/framework:^1.5.7

References