CyberRota Analysis
AI-GeneratedJoomla versions 4.0.0 to 5.4.7 and 6.0.0 to 6.1.2 are vulnerable to a multi-factor authentication (MFA) bypass due to insufficient state checks, allowing attackers to circumvent two-factor authentication protections. This vulnerability poses a significant risk as it can enable unauthorized access to user accounts, potentially compromising sensitive data. Organizations using affected Joomla versions should prioritize immediate patching to mitigate the risk of exploitation.
Original NVD Description
Joomla! Core - [20260807] - MFA Authentication Bypass in Joomla 4.0.0-5.4.7 and 6.0.0-6.1.2 - Insufficient state checks lead to a vector that allows to bypass 2FA checks.
Related CVEs
Other vulnerabilities affecting the same vendor(s)