[20210306] - Core - com_media allowed paths that are not intended for image uploads
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 6.7%
exploitation probability
6.7%top 7% of all CVEs
observed exploitation
nono source reports it
An issue was discovered in Joomla! 3.0.0 through 3.9.24. com_media allowed paths that are not intended for image uploads
Affected products
Joomla! Project · Joomla! CMS