Joomla! Security News |
- [20110308] - Core - CSRF Vulnerability
- [20110307] - Core - XSS Vulnerabilities
- [20110306] - Core - DOS Vulnerabilities
- [20110305] - Core - CSRF Vulnerability
- [20110304] - Core - Unauthorised Access
- [20110303] - Core - Information Disclosure
- [20110302] - Core - Redirect Vulnerabilities
- [20110301] - Core - Information Disclosure
- [20110204] - Core - XSS Vulnerabilities
[20110308] - Core - CSRF Vulnerability Posted: 04 Mar 2011 02:51 PM PST
DescriptionInadequate token checking leads to cross-site request forgery vulnerability. Affected InstallsJoomla! version 1.6.0. SolutionUpgrade to the latest Joomla! version (1.6.1 or later) Reported by Marius van Rijnsoever ContactThe JSST at the Joomla! Security Center. |
[20110307] - Core - XSS Vulnerabilities Posted: 04 Mar 2011 02:45 PM PST
DescriptionInadequate filtering causes XSS vulnerabilities. Affected InstallsJoomla! version 1.6.0. SolutionUpgrade to the latest Joomla! version (1.6.1 or later) Reported by security@joomla.org ContactThe JSST at the Joomla! Security Center. |
[20110306] - Core - DOS Vulnerabilities Posted: 04 Mar 2011 02:40 PM PST
DescriptionEditor caching can result in disk space denial of service. Affected InstallsJoomla! version 1.6.0. SolutionUpgrade to the latest Joomla! version (1.6.1 or later) Reported by Jeff Channell ContactThe JSST at the Joomla! Security Center. |
[20110305] - Core - CSRF Vulnerability Posted: 04 Mar 2011 02:35 PM PST
DescriptionInadequate token checking causes cross site request forgery vulnerability. Affected InstallsJoomla! version 1.6.0. SolutionUpgrade to the latest Joomla! version (1.6.1 or later) Reported by Marius Van Rijnsoever ContactThe JSST at the Joomla! Security Center. |
[20110304] - Core - Unauthorised Access Posted: 04 Mar 2011 02:25 PM PST
DescriptionInadequate control of which files can be edited by authenticated users. Affected InstallsJoomla! version 1.6.0. SolutionUpgrade to the latest Joomla! version (1.6.1 or later) Reported by Jeff Channell ContactThe JSST at the Joomla! Security Center. |
[20110303] - Core - Information Disclosure Posted: 04 Mar 2011 02:20 PM PST
DescriptionInadequate filtering causes information disclosure. Affected InstallsJoomla! version 1.6.0. SolutionUpgrade to the latest Joomla! version (1.6.1 or later) Reported by Jeff Channell ContactThe JSST at the Joomla! Security Center. |
[20110302] - Core - Redirect Vulnerabilities Posted: 04 Mar 2011 02:16 PM PST
DescriptionInadequate checking of redirect URL's. Affected InstallsJoomla! version 1.6.0. SolutionUpgrade to the latest Joomla! version (1.6.1 or later) Reported by Jeff Channell ContactThe JSST at the Joomla! Security Center. |
[20110301] - Core - Information Disclosure Posted: 04 Mar 2011 02:12 PM PST
DescriptionInadequate access checking leads to information disclosure. Affected InstallsJoomla! version 1.6.0. SolutionUpgrade to the latest Joomla! version (1.6.1 or later) Reported by Jeff Channell ContactThe JSST at the Joomla! Security Center. |
[20110204] - Core - XSS Vulnerabilities Posted: 22 Feb 2011 08:56 PM PST
DescriptionInadequate filtering causes XSS vulnerabilities. Affected InstallsJoomla! version 1.6.0. SolutionUpgrade to the latest Joomla! version (1.6.1 or later) Reported by Jeff Channell ContactThe JSST at the Joomla! Security Center. |