Zum Hauptinhalt springen
•
IT Security NachrichtenWho Decided the Safeguards Could Come Down?(05.10.2026 um 15:00 Uhr)
••
IT Security NachrichtenRemoveMacAI Free Up 12GB of Data by Removing Apple Intelligence Models(05.10.2026 um 14:53 Uhr)
•
Malware / Trojaner / VirenClickFix Fake CAPTCHA Attack Executes Malware Hidden Inside Browser Cache(05.10.2026 um 15:02 Uhr)
•••••••
IT Security NachrichtenWho Decided the Safeguards Could Come Down?(05.10.2026 um 15:00 Uhr)
••
IT Security NachrichtenRemoveMacAI Free Up 12GB of Data by Removing Apple Intelligence Models(05.10.2026 um 14:53 Uhr)
•
Malware / Trojaner / VirenClickFix Fake CAPTCHA Attack Executes Malware Hidden Inside Browser Cache(05.10.2026 um 15:02 Uhr)
••••••
Intelligence View
⚡ tsecurity.de Intelligence

Server-Side Request Forgery in Joomla Core URL Fields

Several Joomla core forms validated URL fields without restricting the allowed schemes, so the News Feeds link, the Feed Display module, the Scheduled Tasks…

Beitrag
0
Seite
0
↗ Quelle (Vulnerability definition feed)
Social ReaktionenReagiere als Erste:r — dein Feedback zählt!

Several Joomla core forms validated URL fields without restricting the allowed schemes, so the News Feeds link, the Feed Display module, the Scheduled Tasks GET request and the Joomla Update custom source accepted file://, gopher://, ldap:// and similar URLs. A manager-level user, or a user who can create modules or scheduled tasks, could make the... Weiterlesen: Server-Side Request Forgery in Joomla Core URL Fields

🔍 CTI & Forensik

Cyber Threat Intelligence & Forensik

ATT&CK-Navigator · IoC-Radar · Exploit-Belege
CTI Threat Relationship Graph
Akteure · Techniken · Beziehungen
2 Knoten · 1 Relationen
CVE / Incident Threat Actor Software MITRE ATT&CK CWE Weakness IoC
Zum Aktualisieren ziehen
Nächster Beitrag