CVE-2023-23751: Joomla!
Medium severity, CVSS 4.3. EPSS: 0.4% chance of exploitation in the next 30 days.
An issue was discovered in Joomla! 4.0.0 through 4.2.4. A missing ACL check allows non super-admin users to access com_actionlogs.
Affected products
- Joomla! Joomla!: from 4.0.0, up to and including 4.2.4
Published 2023-02-01. Last modified 2026-06-17.