An issue was discovered in Joomla! before 3.9.7. The update server URL of com_joomlaupdate can be manipulated by non Super-Admin users.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Joomla! |
Joomla |
3.8.13 (including) |
3.9.7 (excluding) |
References