CVE-2021-23128
04.03.2021, 18:15
An issue was discovered in Joomla! 3.2.0 through 3.9.24. The core shipped but unused randval implementation within FOF (FOFEncryptRandval) used an potential insecure implemetation. That has now been replaced with a call to 'random_bytes()' and its backport that is shipped within random_compat.Enginsight
Vendor | Product | Version |
---|---|---|
joomla | joomla\! | 3.2.0 ≤ 𝑥 < 3.9.25 |
𝑥
= Vulnerable software versions